Improving the information security culture through monitoring and implementation actions illustrated through a case study

A Da Veiga, N Martins - Computers & Security, 2015 - Elsevier
The human aspect, together with technology and process controls, needs to be considered
as part of an information security programme. Current and former employees are still …

Organizational cybersecurity readiness in the ICT sector: a quanti-qualitative assessment

M Neri, F Niccolini, L Martino - Information & Computer Security, 2024 - emerald.com
Purpose Cyberattacks are becoming increasingly widespread, and cybersecurity is therefore
increasingly important. Although the technological aspects of cybersecurity are its best …

Cyber risk management in SMEs: insights from industry surveys

F Hoppe, N Gatzert, P Gruner - The Journal of Risk Finance, 2021 - emerald.com
Purpose This article aims to gain insights on the current state of small-and medium-sized
enterprises'(SMEs') cyber risk management process and to derive future research directions …

Examining the effects of knowledge, attitude and behaviour on information security awareness: A case on SME

J Kaur, N Mustafa - … Conference on Research and Innovation in …, 2013 - ieeexplore.ieee.org
The role and importance of information security policy is gaining its popularity in many large
organisations. However, this is not the case for SMEs as develo** and adopting …

A dimension-based information security culture model and its relationship with employees' security behavior: A case study in Malaysian higher educational institutions

A Nasir, R Abdullah Arshah… - … Security Journal: A …, 2019 - Taylor & Francis
Despite strong recommendations by scholars to establish Information Security Culture (ISC),
the lack of ISC guidelines persists, particularly in aspects that could effectively improve …

The importance of the security culture in SMEs as regards the correct management of the security of their assets

A Santos-Olmo, LE Sánchez, I Caballero, S Camacho… - Future Internet, 2016 - mdpi.com
The information society is increasingly more dependent on Information Security
Management Systems (ISMSs), and the availability of these kinds of systems is now vital for …

Elicitation of SME requirements for cybersecurity solutions by studying adherence to recommendations

A Shojaifar, SA Fricker, M Gwerder - arxiv preprint arxiv:2007.08177, 2020 - arxiv.org
Small and medium-sized enterprises (SME) have become the weak spot of our economy for
cyber attacks. These companies are large in number and often do not have the controls in …

Assessing SMEs' cybersecurity organizational readiness: Findings from an Italian survey

M Neri, F Niccolini, P Rosario - THE ONLINE JOURNAL OF APPLIED …, 2022 - arpi.unipi.it
The Small and Medium-sized Enterprises'(SMEs) level of organizational cybersecurity
readiness has been poorly investigated to date. Currently, all SMEs need to maintain an …

Information security management: A case study of an information security culture

SM Alfawaz - 2011 - eprints.qut.edu.au
This thesis argues that in order to establish a sound information security culture it is
necessary to look at organisation's information security systems in a socio-technical context …

Information security culture guidelines to improve employee's security behavior: a review of empirical studies

N Akhyari, AA Ruzaini, AH Rashid - Journal of Fundamental and Applied …, 2018 - ajol.info
Abstract This paper reviews Information Security Culture (ISC) studies published in six
leading databases from year 2000 until 2016 to investigate empirical findings that could …