Abstract

The purpose of this study was to examine empirically the extent of the relationships between information security governance (ISG) strategic alignment and other individual information security domain areas consisting of risk management, value delivery, performance measurement, and resource management in order to ascertain whether the domain areas were integrated for ISG success in Ghanaian organizations. Corporate governance theories, including agency theory, stakeholder theory, and organizational theory, were employed to explore the literature. These theories were mapped to strategic alignment, risk management, resource management, performance measurement, and value delivery domains of information security governance. Random sampling strategy was used and data were collected via web survey. The data analysis employed a linear regression analysis to determine the degree of correlation among the domain areas. The study found that relationships between information security governance strategic alignment and other ISG domains were positively statistically significant. Strategic alignment was related to risk management (R² = .836); to value delivery (R² = .718), to performance measurement (R² = .722), and to resource management (R² = .747). The results highlighted consistent importance of strategic alignment practices as a predictor of organizational information security risk management, performance measurement, resource management, and value delivery. This implies that effective information security governance strategic alignment greatly improves organizations’ risk management, resource management, performance measurement, and delivers business value. Therefore, organizations should improve strategic alignment attributes in order to attain effective information security governance.

Highlights

  • An important aspect of corporate governance is to ensure that organizational information assets are secured

  • This study empirically examines the extent of the relationship between information security/business strategic alignment and individual information security domain areas, which are risk management, value delivery, performance measurement, and resource management (De Haes and Van Grembergen, 2009) in organizations

  • The research question evaluates the extent of the relationship between information security domain practices and information security governance strategic alignment in Ghanaian organizations

Read more

Summary

Introduction

An important aspect of corporate governance is to ensure that organizational information assets are secured. Information asset can be Governance and Ethics in both online and print formats. Information safe and secure is a key necessity for every modern organization and the board of directors and executive management are accountable for the organization’s success (von Solms, 2006). It is imperative that the top executives take responsibility for the protection of their company’s information asset. Research discussed information security extensively but rather few studies addressed information security as corporate governance concern in the developing nations (El-Meligy, 2011)

Objectives
Methods
Results
Discussion
Conclusion
Full Text
Paper version not known

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call

Disclaimer: All third-party content on this website/platform is and will remain the property of their respective owners and is provided on "as is" basis without any warranties, express or implied. Use of third-party content does not indicate any affiliation, sponsorship with or endorsement by them. Any references to third-party content is to identify the corresponding services and shall be considered fair use under The CopyrightLaw.