2013 International Conference on Research and Innovation in Information Systems (ICRIIS) 2013
DOI: 10.1109/icriis.2013.6716723
|View full text |Cite
|
Sign up to set email alerts
|

Examining the effects of knowledge, attitude and behaviour on information security awareness: A case on SME

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

1
19
0
4

Year Published

2017
2017
2024
2024

Publication Types

Select...
4
4

Relationship

0
8

Authors

Journals

citations
Cited by 37 publications
(30 citation statements)
references
References 12 publications
1
19
0
4
Order By: Relevance
“…And adding to the worrying nature of this finding was the fact that, at the same time, the majority of students gave a contradictory self-perception answer on the same topic, by indicating they are confident in being able to identifying a phishing email. This finding aligns to findings of the study by Kaur and Mustafa (2013), which concluded that there is no significant relationship between knowledge and true information security awareness. Similarly, Bada and Sasse (2014) reported that knowledge alone is insufficient for true awareness.…”
Section: The Dilemmas Of Cognitive Dissonance On Csa Matterssupporting
confidence: 91%
See 1 more Smart Citation
“…And adding to the worrying nature of this finding was the fact that, at the same time, the majority of students gave a contradictory self-perception answer on the same topic, by indicating they are confident in being able to identifying a phishing email. This finding aligns to findings of the study by Kaur and Mustafa (2013), which concluded that there is no significant relationship between knowledge and true information security awareness. Similarly, Bada and Sasse (2014) reported that knowledge alone is insufficient for true awareness.…”
Section: The Dilemmas Of Cognitive Dissonance On Csa Matterssupporting
confidence: 91%
“…Hagen and Albrechtsen (2009) concluded that an e-learning tool that they assessed was a suitable mechanism for the initial creation of common values and attitudes to build a corporate information security culture. Kaur and Mustafa (2013) investigated how information security awareness of Malaysian small and medium enterprise employees was affected by attitude, behaviour, and knowledge. The study found that attitude and behaviour had significant relationships with information security awareness, but knowledge did not.…”
Section: Literature Review and Analytical Frameworkmentioning
confidence: 99%
“…Performance risk perceived as the highest risk of using mobile banking as 'Mobile Banking services may not perform well because of network problems' [25]. Nevertheless, information security awareness is important and can be fundamentally impact to integrity, confidentiality and availability of business information [26]. Besides, financial institution should focus on employees training and awareness program in order to enhance the security policy compliance [27] which is very important element as a payment policy in the unmanned store.…”
Section: Security For Online Banking In Malaysiamentioning
confidence: 99%
“…Confidentiality, Integrity, Availability) von Information sicherzustellen und das Unternehmen vor Verlust, Vernichtung, Veröffentlichung, Kopie, Verkauf und sonstigem Missbrauch von Informationen schützen zu können [1], [2]. Organisationen müssen generell ihr Informationssicherheitsrisiko kontrollieren und steuern, um auf unterschiedliche Bedrohungen, wie Angriffe durch Dritte oder fahrlässiges Verhalten von MitarbeiterInnen, reagieren zu können und vertrauliche Daten zu schützen [3][4][5][6][7][8][9][10][11]. Dies gilt für analoge und digital gespeicherte Daten, allerdings nimmt die Gefahr für die Informationssicherheit, die von Schwachstellen in Informationssystemen ausgeht, stetig zu.…”
Section: Introductionunclassified
“…Aus technischer Sicht wurde das Thema Informationssicherheit bereits intensiv beforscht, dem Individuum als mögliche Schwachstelle wurde bisher allerdings weniger Beachtung geschenkt [12], [13]. Technische Vorkehrungen sind aber nur bedingt wirksam, wenn EndbenutzerInnenin Unternehmen oder im privaten Umfeld sich nicht an Vorschriften halten [5][6][7], [12], [14][15][16][17]. Einige Faktoren, die die Einhaltung von Sicherheitsvorschriften fördern wurden bereits intensiv diskutiert, wie zum Beispiel die Etablierung einer entsprechenden Unternehmenskultur, die Förderung des Bewusstseins (engl.…”
Section: Introductionunclassified