Mat Deli, Mohd. Sharudin and Ahmad, Jarin Fathima and Hassan, Noor Hafizah and Maarop, Nurazean and Samy, Ganthan Narayana and Abdullah, Mohd. Shahidan and Yaacob, Suraya (2017) Understanding user participation in information security risk management. Open International Journal of Informatics (OIJI), 5 (2). pp. 32-37. ISSN 2289-2370
|
PDF
553kB |
Official URL: http://publication.ais.utm.my/ojs/index.php/oiji/a...
Abstract
Risk management is the continuing process to control and manage the risk in organisation for identifying, accessing and controlling threats to an organisation’s capital and earning. The implementation of information security risk management (ISRM) helps to address the risks to information processed by an organisation that may help the organisation to manage the risk effectively. Involving the user throughout the process of ISRM is important to ensure that it provides an effective security risk management (SRM). There are limited evidence shows that user participation is important in ISRM. Therefore, the aim of this paper to investigate user participation in ISRM from user participation and access control constructs. A quantitative method is implemented by distributing a questionnaire to two different organisational backgrounds to 20 respondents. This paper presents the initial findings that user participation play a significant role towards ISRM by presenting the results from the two constructs. The findings contribute to the body of knowledge that understanding user participation in ISRM shows that the process of risk management is different between two organisational backgrounds.
Item Type: | Article |
---|---|
Uncontrolled Keywords: | Information Security Risk Management, User Participation, ISRM |
Subjects: | H Social Sciences > HD Industries. Land use. Labor > HD30.213 Management information systems. Decision support systems |
Divisions: | Advanced Informatics School |
ID Code: | 80684 |
Deposited By: | Fazli Masari |
Deposited On: | 27 Jun 2019 06:15 |
Last Modified: | 27 Jun 2019 06:15 |
Repository Staff Only: item control page