Security Awareness: The First Step in Information Security Compliance Behavior

Inho Hwang,Robin Wakefield,Sanghyun Kim,Taeha Kim
DOI: https://doi.org/10.1080/08874417.2019.1650676
2019-08-13
Journal of Computer Information Systems
Abstract:In this study, we use the attentional phase of social learning theory to link workplace security-related experiences and observations to employees' security awareness. The responses of 398 organizational employees serve to test our research model using structural equational modeling with AMOS 22.0. The results show security awareness arises from both explicit and subjective security experiences in the workplace. Our respondents indicate knowledge of a physical system has little, if any, effect on security awareness. However, security education, policy, visibility and managerial security participation are important for producing security awareness. Furthermore, managerial participation strengthens the links between organizational security efforts and security awareness. We discuss the implications of our study for future security compliance research and practice.
computer science, information systems
What problem does this paper attempt to address?