Leader power and employees’ information security policy compliance

Hyungjin Lukas Kim,HanByeol Stella Choi,Jinyoung Han
DOI: https://doi.org/10.1057/s41284-019-00168-8
2019-01-22
Security Journal
Abstract:Dependence on mobile and outside networks exposes businesses to information leakages by insiders, increasing the importance of information security. Consequently, companies need to implement security education training and awareness (SETA) programs, to ensure employees comply with information security policies (ISPs). The influence of supervisor leadership on the effectiveness of such programs has received little empirical attention. This study empirically analyzes the moderating role of leader power bases effect in the relationship between SETA programs and employees’ ISP compliance intention using WarpPLS 5.0. The moderating effects differ by leader power base type, and expertise, reward, and legitimate power have a positive impact on the relationship. The findings have theoretical and practical implications for the execution of SETA programs and creation of organizational environments in the context of information security.
criminology & penology
What problem does this paper attempt to address?