Organizational governance, social bonds and information security policy compliance: a perspective towards oil and gas employees

Information security attacks on oil and gas (O&G) organizations have increased since the last decade. From 2015 to 2019, almost 70 percent of O&G organizations faced at least one significant security breach worldwide. Research has shown that 43 percent of security attacks on O&G organiza...

Full description

Main Authors: Ali, R.F., Dominic, P.D.D., Ali, K.
Format: Article
Institution: Universiti Teknologi Petronas
Record Id / ISBN-0: utp-eprints.29904 /
Published: MDPI 2020
Online Access: https://www.scopus.com/inward/record.uri?eid=2-s2.0-85092897986&doi=10.3390%2fsu12208576&partnerID=40&md5=bac10b9c3e264074b051f7842863af9e
http://eprints.utp.edu.my/29904/
Tags: Add Tag
No Tags, Be the first to tag this record!
id utp-eprints.29904
recordtype eprints
spelling utp-eprints.299042022-03-25T03:14:14Z Organizational governance, social bonds and information security policy compliance: a perspective towards oil and gas employees Ali, R.F. Dominic, P.D.D. Ali, K. Information security attacks on oil and gas (O&G) organizations have increased since the last decade. From 2015 to 2019, almost 70 percent of O&G organizations faced at least one significant security breach worldwide. Research has shown that 43 percent of security attacks on O&G organizations occur due to the non-compliant behavior of O&G employees towards information security policy. The existing literature provides multiple solutions for technical security controls of O&G organizations. However, there are very few studies available that address behavioral security controls, specifically for O&G organizations of developing countries. The purpose of this study is to provide a comprehensive framework for information security policy compliance (ISPC) for the O&G sector. A mixed-method approach is used to develop the research framework. Semi-structured interviews from O&G specialists refined the developed framework. Based on qualitative study a survey questionnaire was developed. To evaluate the research framework, structural equation modeling was applied to a sample of 254 managers/executives from 150 Malaysian O&G organizations. The obtained test results confirmed the proposed research model, according to which good social bonding among employees plays a critical role in improving ISPC. However, there was less support for the notion that all organizational governance factors significantly improve the social bonding of Malaysian O&G organizations employees. This paper contributes to the current information system (IS) literature by exploring the interrelationships among organizational governance, social bonding, and information security policy compliance (ISPC) in Malaysian O&G organizations. © 2020 by the authors. Licensee MDPI, Basel, Switzerland. MDPI 2020 Article NonPeerReviewed https://www.scopus.com/inward/record.uri?eid=2-s2.0-85092897986&doi=10.3390%2fsu12208576&partnerID=40&md5=bac10b9c3e264074b051f7842863af9e Ali, R.F. and Dominic, P.D.D. and Ali, K. (2020) Organizational governance, social bonds and information security policy compliance: a perspective towards oil and gas employees. Sustainability (Switzerland), 12 (20). pp. 1-27. http://eprints.utp.edu.my/29904/
institution Universiti Teknologi Petronas
collection UTP Institutional Repository
description Information security attacks on oil and gas (O&G) organizations have increased since the last decade. From 2015 to 2019, almost 70 percent of O&G organizations faced at least one significant security breach worldwide. Research has shown that 43 percent of security attacks on O&G organizations occur due to the non-compliant behavior of O&G employees towards information security policy. The existing literature provides multiple solutions for technical security controls of O&G organizations. However, there are very few studies available that address behavioral security controls, specifically for O&G organizations of developing countries. The purpose of this study is to provide a comprehensive framework for information security policy compliance (ISPC) for the O&G sector. A mixed-method approach is used to develop the research framework. Semi-structured interviews from O&G specialists refined the developed framework. Based on qualitative study a survey questionnaire was developed. To evaluate the research framework, structural equation modeling was applied to a sample of 254 managers/executives from 150 Malaysian O&G organizations. The obtained test results confirmed the proposed research model, according to which good social bonding among employees plays a critical role in improving ISPC. However, there was less support for the notion that all organizational governance factors significantly improve the social bonding of Malaysian O&G organizations employees. This paper contributes to the current information system (IS) literature by exploring the interrelationships among organizational governance, social bonding, and information security policy compliance (ISPC) in Malaysian O&G organizations. © 2020 by the authors. Licensee MDPI, Basel, Switzerland.
format Article
author Ali, R.F.
Dominic, P.D.D.
Ali, K.
spellingShingle Ali, R.F.
Dominic, P.D.D.
Ali, K.
Organizational governance, social bonds and information security policy compliance: a perspective towards oil and gas employees
author_sort Ali, R.F.
title Organizational governance, social bonds and information security policy compliance: a perspective towards oil and gas employees
title_short Organizational governance, social bonds and information security policy compliance: a perspective towards oil and gas employees
title_full Organizational governance, social bonds and information security policy compliance: a perspective towards oil and gas employees
title_fullStr Organizational governance, social bonds and information security policy compliance: a perspective towards oil and gas employees
title_full_unstemmed Organizational governance, social bonds and information security policy compliance: a perspective towards oil and gas employees
title_sort organizational governance, social bonds and information security policy compliance: a perspective towards oil and gas employees
publisher MDPI
publishDate 2020
url https://www.scopus.com/inward/record.uri?eid=2-s2.0-85092897986&doi=10.3390%2fsu12208576&partnerID=40&md5=bac10b9c3e264074b051f7842863af9e
http://eprints.utp.edu.my/29904/
_version_ 1741197317895094272
score 11.62408