Exploring information security policy related behaviors from relationship coping perspective
Information security policy, Organizational conflict, Coping theory, Information security education and training, Organizational justice, Information security awareness
In recent years, the degree of digitalization of enterprise organizations has gradually increased, and the budget invested in information security infrastructure has also increased. However, information security incidents related to internal control have not decreased with the investment in information security protection structures and technologies. Therefore, this study will be based on coping theory, information security training, organizational justice and information security awareness, and with the questionnaire method, from the perspective of organizational members, to explore the factors that may violate information security, and to propose countermeasures after finding out these factors, in order to reduce the occurrence of information security incidents.
This study uses the convenience sampling method to distribute through the Internet. A total of 350 completed and returned questionnaires are used for analysis and verification using statistical software. The research results show that information security training has a positive impact on positive relationship responses. Security training can enhance organizational members to respond positively to organizational information security norms. Organizational information security justice has a positive impact on positive relational coping. When organizational members have a high degree of perception of organizational information security justice, it will prompt them to take positive responses to information security policies and respond to organizational information security policies. . Positive relational responses have a positive impact on information security obedience behavior, but have a negative impact on information security speculative behavior; organization members have a high degree of acceptance of information security, and will comply with the organization's information security policy; otherwise, they will take opportunistic behavior to avoid own obligations and responsibilities in the organization's information security policy.
