首页> 外文会议>Americas conference on information systems;AMCIS 2011 >The Role of Conflict Resolution in Designing and Implementing Information Security Policies: An Institutional Perspective
【24h】

The Role of Conflict Resolution in Designing and Implementing Information Security Policies: An Institutional Perspective

机译:冲突解决在设计和实施信息安全策略中的作用:制度视角

获取原文

摘要

This paper examines the suitability of institutional theory in explaining the design and implementation of information security policies in organizations. We conduct a case study in a large governmental organization in the United States. We capture multiple perspectives among the different groups in the organization and examine how this affects the design and implementation of security policies. We find a high interdependence between the information security group and other groups in the organization resulting in task and process conflicts. These conflicts had both positive and negative outcomes. A combination of dominating and compromising conflict management styles are shown to produce positive results in resolving the conflicts. Our study highlights the importance for managers to balance security and usability and to ensure that the stringency of security policies do not override the business objectives of the organization.
机译:本文研究了制度理论在解释组织中信息安全策略的设计和实施方面的适用性。我们在美国的一个大型政府组织中进行了案例研究。我们在组织中的不同组之间捕获了多种观点,并研究了这如何影响安全策略的设计和实施。我们发现信息安全组与组织中的其他组之间存在高度相互依赖性,从而导致任务和流程冲突。这些冲突既有积极的结果也有消极的结果。主导和折衷的冲突管理风格的结合在解决冲突方面产生了积极的效果。我们的研究强调了管理人员平衡安全性和可用性并确保安全性政策的严格性不超过组织的业务目标的重要性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号