ABSTRACT
This paper provides a systematic literature review in the information security policies’ compliance (ISPC) field, with respect to information security culture, information security awareness, and information security management exploring in various settings the research designs, methodologies, and frameworks that have evolved over the last decade. Studies conducted from 2006 to 2016 reporting results from data collected through diverse means have been explored; however, only a few studies have focused primarily on a sensitive infrastructure under risk, as is the case with higher education institutions (HEIs). This study reports that ISPC in HEIs remains scarce, as is the realization of security threats and dissemination of information security policies to end users (employees). This research makes a novel contribution to the body of knowledge as a unique study that has reviewed the influence of institutional governance in HEIs on protection motivation leading towards ISPC.
Acknowledgments
This research is endorsed by Computer and Information Sciences Department, Universiti Teknologi PETRONAS (UTP), Malaysia.
Additional information
Notes on contributors
Sadaf Hina
Sadaf Hina is a postgraduate student and PhD candidate at Universiti Teknologi PETRONAS, Malaysia. Her research interest is in information security, security policies development and compliance, social media, security in social networks, and potential usage of social media in education. She has worked as a research officer under the Exploratory Research Grant Scheme, funded by the Malaysian Government. Her primary effort has been to explore the factors affecting the school-based adoption of social networking sites for participation/collaboration among school stakeholders. She has published in various leading journals with distinguished indices.
P. Dhanapal Durai Dominic
Dr. P. Dhanapal Durai Dominic is currently an associate professor in Universiti Teknologi PETRONAS, Malaysia. He received his PhD in Management at Alagappa University, India. He received his Post-Graduate Diploma in Operations Research from Pondicherry University, India; Masters of Business Administration; Masters of Philosophy in Mathematics and Masters of Science in Mathematics from Bharathidasan University, India. He has been working in the capacity of editorial board member for renowned journals. His research interests include Management Information Systems and Knowledge Management. He has published in several journals with high-impact factors and distinguished indices like SCOPUS and ISI.