Abstract
Purpose
– The purpose of this empirical research is to attempt to explore the effect of information security initiatives (ISI) on supply chain performance, considering various intra- and inter-organization information security aspects that are deemed to have an influence on supply chain operations and performance.
Design/methodology/approach
– Based on extant information security management and supply chain security management literature, a conceptual model was developed and validated. A questionnaire survey instrument was developed and administered among supply chain managers to collect data. Data were collected from 197 organizations belonging to various sectors. The study used exploratory and confirmatory factor analysis for data analysis. Further, to test the hypotheses and to fit the theoretical model, structural equation modeling techniques were used.
Findings
– Results of this study indicate that ISI, comprising technical, formal and informal security aspects in an intra- and inter-organizational environment, are positively associated with supply chain operations, which, in turn, positively affects supply chain performance.
Research limitations/implications
– This study provides the foundation for future research in the management of information security in supply chains. Findings are expected to provide the communities of practice with better information security decision-making in a supply chain context, by clearly formulating technical, formal and informal information security policies for improving supply chain performance.
Originality/value
– In today’s global supply chain environment where competition prevails among supply chains, this research is relevant in terms of capability that an organization has to acquire for managing internal and external information security. In that sense, this study contributes to the body of knowledge with an empirical analysis of organizations’ information security management initiatives as a blend of technical, formal and informal security aspects.
Subject
Library and Information Sciences,Management Science and Operations Research,Business and International Management,Management Information Systems
Reference79 articles.
1. Asai, T.T.
and
Perez, J.L.C.
(2012), “Human-related problems in information security faced by Japanese, British and American overseas companies because of cultural differences”,
China-USA Business Review
, Vol. 11 No. 1, pp. 86-101.
2. Ashenden, D.
(2008), “Information security management: a human challenge”,
Information Security Technical Report
, Vol. 13 No. 4, pp. 195-201.
3. Brotby, W.K.
(2009),
Information Security Management Metrics
, CRC Press, Boca Raton, FL.
4. BS 7799-2
(1999),
Information Security Management Part 2: Specification for Information Security Management Systems
, British Standards Institute, London.
5. Bulgurcu, B.
,
Cavusoglu, H.
and
Benbasat, I.
(2010), “Information security policy compliance: an empirical study of rationality-based beliefs and information security awareness”,
MIS Quarterly
, Vol. 34 No. 3, pp. 523-548.
Cited by
17 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献