n South African Computer Journal - Information security culture - from analysis to change : research article
|Article Title||Information security culture - from analysis to change : research article|
|© Publisher:||South African Computer Society (SAICSIT)|
|Journal||South African Computer Journal|
|Author||T. Schlienger and S. Teufel|
|Publication Date||Dec 2003|
|Pages||46 - 52|
|Keyword(s)||Change and maintenance of information security culture, Evaluation of information security culture, Information security awareness, Information security culture, Information security marketing and K.6|
Information Security Culture includes all socio-cultural measures that support technical security methods, so that information security becomes a natural aspect in the daily activity of every employee. To apply these socio-cultural measures in an effective and efficient way, certain management models and tools are needed. In our research we developed a framework analyzing the security culture of an organization which we then applied in a pre-evaluation survey. This paper is based on the results of this survey. We will develop a management model for creating, changing and maintaining Information Security Culture. This model will then be used to define explicit socio-cultural measures, based on the concept of internal marketing.
Article metrics loading...