Does One Size Fit All? Examining the Differential Effects of IS Security Countermeasures

John D’Arcy,Anat Hovav
DOI: https://doi.org/10.1007/s10551-008-9909-7
IF: 6.331
2008-08-27
Journal of Business Ethics
Abstract:Research from the fields of criminology and social psychology suggests that the deterrent effect of security countermeasures is not uniform across individuals. In this study, we examine whether certain individual characteristics (i.e., computer self-efficacy) or work arrangement (i.e., virtual status) moderate the influence of␣security policies, security education, training, and awareness (SETA) program, and computer monitoring on information systems misuse. The results suggest that computer savvy individuals are less deterred by SETA programs and computer monitoring, while these countermeasures are also less influential (from a deterrence perspective) on employees that spend more working days outside the office. Implications for both the research and practice of information security are discussed.
business,ethics
What problem does this paper attempt to address?