• Home
  • Search
  • A policy driven, human oriented information security model: a case study in UAE banking sector
  • Cite Icon6
  • https://doi.org/10.1109/ains47559.2019.8968705Copy DOI Icon

A policy driven, human oriented information security model: a case study in UAE banking sector

  • Nov 1, 2019
  • Khalid Eisa Haidar Abdalla Alhosani +4 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

As companies continue to invest in information security, human weaknesses continue to remain a root cause of data breaches in organisations. Several security models have been proposed in the literature but largely remain ineffective at addressing this human vulnerability. In this paper, a policy-driven, human-oriented information security model is proposed. By adopting an information security policy, organizations set strong foundations on which sound security practices can be disseminated and enforced within the organisation. Instead of viewing human as the source of problem, it is a model that put human as the primary source of effectiveness to implement security policy. In this model, staffs in an organization will collectively secure an organisation from attacks. From existing literature and interviews conducted with selected banks in UAE, three primary factors, namely information security policy awareness, security training, and computer & security technology proficiency have been identified and incorporated into the new security model.

Similar Papers
  • Conference Article
  • Citations1

Information risk and security modeling

  • Mar 28, 2005
  • Proceedings of SPIE, the International Society for Optical Engineering/Proceedings of SPIE
  • Predrag Zivic
  • Research Article

Evaluating the Perceived Impact of Collaborative Exchange and Formalization on Information Security

  • Jan 01, 2010
  • Journal of International Technology and Information Management
  • Randall Young
  • Research Article

METHOD FOR INTEGRATING INFORMATION SECURITY POLICIES, STANDARDS AND PROTOCOLS INTO THE DEVELOPMENT OF A COMPREHENSIVE INFORMATION SECURITY SYSTEM IN AN ORGANIZATION

  • Jan 01, 2025
  • Cybersecurity: Education, Science, Technique
  • Valeriia Balatska +2
  • Book Chapter

Managing Security Clearances within Government Institutions

  • Jan 01, 2008
  • Lech Janczewski +1
  • Research Article

ИНТЕРОПЕРАБЕЛЬНОСТЬ КАК ОСНОВА ДЛЯ СИСТЕМАТИЗАЦИИ МЕТОДОВ И СРЕДСТВ ИНФОРМАЦИОННОЙ БЕЗОПАСНОСТИ

  • Jan 01, 2025
  • Voprosy kiberbezopasnosti
  • A Yu Grishentsev +2
  • Research Article
  • Citations15

A multifaceted evaluation of the reference model of information assurance & security

  • Sep 23, 2016
  • Computers & Security
  • Yulia Cherdantseva +3
  • Research Article
  • Citations118

Information systems user security: A structured model of the knowing–doing gap

  • May 31, 2012
  • Computers in Human Behavior
  • James Cox
  • PDF
  • Research Article

SPECIAL THEORY OF ADMINISTRATIVE – LEGAL REGULATION OF INFORMATION SECURITY OF THE SOCIAL SYSTEMS

  • Jan 24, 2018
  • UKRAINIAN ASSEMBLY OF DOCTORS OF SCIENCES IN PUBLIC ADMINISTRATION
  • Serhiі Oleksiyovych Lysenko
  • PDF
  • Research Article

SPECIAL THEORY OF ADMINISTRATIVE – LEGAL REGULATION OF INFORMATION SECURITY OF THE SOCIAL SYSTEMS

  • Feb 14, 2018
  • UKRAINIAN ASSEMBLY OF DOCTORS OF SCIENCES IN PUBLIC ADMINISTRATION
  • Serhiі Oleksiyovych Lysenko
  • Research Article
  • Citations13

The Effect of Rational Based Beliefs and Awareness on Employee Compliance with Information Security Procedures: A Case Study of a Financial Corporation in Israel

  • Jan 01, 2020
  • Interdisciplinary Journal of Information, Knowledge, and Management
  • Golan Carmi +1
  • Research Article

Training Employees to Identify Potential Fraud and How to Encourage Them to Come Forward

  • Dec 01, 2005
  • EDPACS
  • Rebecca Herold
  • Book Chapter
  • Citations159

Employees’ Adherence to Information Security Policies: An Empirical Study

  • Jan 01, 2007
  • Mikko Siponen +2
  • Research Article
  • Citations3

An empirical study of staff compliance to information security policy in a South African municipality

  • Jan 01, 2015
  • Corporate Ownership and Control
  • Nehemiah Mavetera +2
  • Single Book
  • Citations36

Handbook of Research on Social and Organizational Liabilities in Information Security

  • Jan 01, 2009
  • Manish Gupta +1
  • Research Article

Top Management Support, Legitimation, and Effectiveness of Information Security Management

  • May 10, 2018
  • Waiguo jingji yu guanli
  • Kunxiang Dong +3
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.