Back to results

University of Bradford

Organisational information security management: The impact of training and awareness. Evaluating the socio-technical impact on organisational information security policy management.

Abstract

dc:description.abstract

Security breaches have attracted attention from corporations and scholars alike. The major organisations are determined to stop security breaches as they are detrimental to their success. Arguably the most common factor contributing to these breaches is employee behaviour, which suggests that changes in employee behaviour can have an impact on improving security. This research aims to study the critical factors (CFs) that impact on employee behaviours toward compliance with their organisation¿s information security policy. This investigation will focus on the various critical success factors based on their grouping into one of the following three major categories, namely: organisational factors, behavioural factors and training factors. Each of these categories affects a different aspect of information security and the objective is to not only understand the interaction of different factors but also to study further the aims in order to provide practical recommendations for improving organisational information security management. This study has utilised empirical research through the use of both qualitative and quantitative methodologies to inform each stage of the research. This study focused on the health, business and education sectors by empirically evaluating the obstacles and success factors that affect employee compliance to organisational security policies. In addition, this study also evaluated the affect of the socio-technical impact on organisational information security management. The final stage of the research focused on developing an effective training and awareness programme. This training programme was constructed by incorporating the techniques that were identified as enhancing employee perceptions, attitudes and motivations, in order to facilitate a better transference of skills and more sustainable and appropriate behaviours to improve organisational information security management in the workplace. The techniques utilised included: effective communication, knowledge reinforcement, pre- and post-assessment and motivational techniques.

Degree

thesis:*
Grantor dc:publisher.institution
University of Bradford
Year dc:date.issued
2013

Author and committee

dc:creator, dc:contributor.*
Author dc:creator
  • Waly, Nesren Saleh
Advisors dc:contributor.advisor
  • Tassabehji, Rana
  • Kamala, Mumtaz A.

Subjects

dc:subject × 6

Rights

dc:rights
Statement dc:rights
  • <a rel="license" href="http://creativecommons.org/licenses/by-nc-nd/3.0/"><img alt="Creative Commons License" style="border-width:0" src="http://i.creativecommons.org/l/by-nc-nd/3.0/88x31.png" /></a><br />The University of Bradford theses are licenced under a <a rel="license" href="http://creativecommons.org/licenses/by-nc-nd/3.0/">Creative Commons Licence</a>.
Language dc:language.iso
en

Identifiers

dc:identifier.*
Handle dc:identifier.uri
http://hdl.handle.net/10454/5666
OAI identifier oai:identifier
oai:bradscholars.brad.ac.uk:10454/5666

Chain of custody

source
Harvested from
University of Bradford
Base URL
bradscholars.brad.ac.uk/oai/request
Last updated
2026-07-24
Source record
OAI-PMH GetRecord
citation

Waly, Nesren Saleh. Organisational information security management: The impact of training and awareness. Evaluating the socio-technical impact on organisational information security policy management.. University of Bradford, 2013. http://hdl.handle.net/10454/5666