Abstract

The establishment of Information Security Culture (ISC) has been recommended for improving employees’ information security in the organization. To date, there is still no clear guidance or model for assessing and cultivating ISC for Malaysian organizations, despite some Malaysian-based studies being carried out. In order to shed light to this issue, we reviewed all ISC models developed in Malaysian context to identify models for particular types of organization in Malaysia. Three major databases of Web of Science, Scopus and Google Scholar were systematically exhausted and we found only six papers from 2000 to 2018 that met our selection criteria. Our analysis revealed that there is a lack of validated ISC models have been produced for particular types of organization. The current model only applicable to healthcare, library and public organizations in Malaysia. In addition, there is a lack of consistency in terms of ISC factors used in the ISC models and there is no common set of factors could be applied for all type of Malaysian organization. This review has amplified the need for a more thorough and in-depth studies for ISC model in Malaysian context.

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call

Disclaimer: All third-party content on this website/platform is and will remain the property of their respective owners and is provided on "as is" basis without any warranties, express or implied. Use of third-party content does not indicate any affiliation, sponsorship with or endorsement by them. Any references to third-party content is to identify the corresponding services and shall be considered fair use under The CopyrightLaw.