Impact of Employees' Demographic Characteristics on the Awareness and Compliance of Information Security Policy in Organizations

Hui Na Chua,Siew Fan Wong,Yeh Ching Low,Younghoon Chang
DOI: https://doi.org/10.1016/j.tele.2018.05.005
IF: 9.14
2018-01-01
Telematics and Informatics
Abstract:To protect consumer information, many countries have begun enforcing the Personal Data Protection Act. Organizations are required to comply with this Act, failure of which may result in hefty penalties. To ensure compliance, some organizations have introduced their own information security policy to protect consumer information. A review of the literature shows that many employees are either unaware of the policy or tend to ignore it, which increases the risk of noncompliance. To help organizations manage compliance among their employees, in this study, we used demographic factors to develop profiles of employees' policy awareness and their intention to comply. By having an understanding of employee profiles, effective and targeted strategies can be devised to educate employees accordingly. Our data from 607 respondents show that age, working industry and education levels have significant effects on information security policy awareness and compliance.
What problem does this paper attempt to address?