篇名 | A Laboratory Study Designed for Reducing the Gap between Information Security Knowledge and Implementation |
---|---|
卷期 | 1:1 |
作者 | Revital Elitzur 、 Ying Sai |
頁次 | 037-050 |
關鍵字 | Information Security 、 Business Enabler 、 Laboratory Experiment |
出刊日期 | 201006 |
Companies often have the knowledge on procedures to prevent or mitigate against information technology security risks. Yet these companies may not take adequate measures to implement these procedures, and instead, leave themselves vulnerable to security breaches. Potential reasons for this gap between information security knowledge and implementation are provided based on interviews with information technology managers at a global automobile sales and marketing company. Four mechanisms to reduce this gap are proposed, along with a new approach to conduct a laboratory experiment to evaluate the effectiveness of these mechanisms, applied independently and in combinations.