Skip to main navigation Skip to search Skip to main content

The Weakest Link Human Behaviour and the Corruption of Information Security Management in Organisations - an Analytical Framework

Research output: Chapter in Book/Report/Conference proceedingPaper in conference proceedingpeer-review

437 Downloads (Pure)

Abstract

In this paper we introduce the norm-injection analysis framework, a construct which can be employed to aid analysis of processes that affect information security management (ISM) in organisations. The underpinnings of this framework draw on and evolve - theories about how apparently mundane organisational processes, particularly managerial demands on employees, may in some instances lead to undesired, perhaps calamitous, consequences. Because the mechanisms between input (demand) and the adverse consequences work by gradually accruing and multiplying Subtle communication "problemettes" into major problems, they are almost undetectable to the untrained eye. Breaches of ISM protocol may appear wholly mysterious to the crash investigators brought in to analyse, post-event, what went wrong. The norm-injection analysis framework is intended to shed light on these below-the-radar processes, and to supplement the tool set an organisation analyst has at his disposal when preparing or evaluating strategic ISM measures.
Original languageEnglish
Title of host publicationIMSCI '08: 2nd International Multi-Conference on Society, Cybernetics and Informatics, Vol III, Proceedings
PublisherInternational Institute of Informatics and Systemics
Pages94-99
Publication statusPublished - 2008
Event2nd International Multi-Conference on Society, Cybernetics and Informatics - Orlando, FL
Duration: 2008 Jun 292008 Jul 2

Conference

Conference2nd International Multi-Conference on Society, Cybernetics and Informatics
Period2008/06/292008/07/02

Subject classification (UKÄ)

  • Political Science
  • Psychology

Fingerprint

Dive into the research topics of 'The Weakest Link Human Behaviour and the Corruption of Information Security Management in Organisations - an Analytical Framework'. Together they form a unique fingerprint.

Cite this