Search the World's Largest Database of Information Science & Technology Terms & Definitions
InfInfoScipedia LogoScipedia
A Free Service of IGI Global Publishing House
Below please find a list of definitions for the term that
you selected from multiple scholarly research resources.

What is Security Culture

Cybersecurity Education for Awareness and Compliance
A security culture can be seen as the unconscious manner in which things are done in an organization to secure information. The security culture is synonymous with the information security culture and includes cybersecurity culture in the context of an organization.
Published in Chapter:
Achieving a Security Culture
Adéle Da Veiga (University of South Africa, South Africa)
Copyright: © 2019 |Pages: 29
DOI: 10.4018/978-1-5225-7847-5.ch005
Abstract
A security culture can be a competitive advantage when employees uphold strong values for the protection of information and exhibit behavior that is in compliance with policies, thereby introducing minimal incidents and breaches. The security culture in an organization might, though, not be similar among departments, job levels, or even generation groups. It can pose a risk when it is not conducive to the protection of information and when security incidents and breaches occur due to employee error or negligence. This chapter aims to give organizations an overview of the concept of security culture, the factors that could influence it, an approach to assess the security culture, and to prioritize and tailor interventions for high-risk areas. The outcome of the security culture assessment can be used as input to define security awareness, training, and education programs aiding employees to exhibit behavior that is in compliance with security policies.
Full Text Chapter Download: US $37.50 Add to Cart
eContent Pro Discount Banner
InfoSci OnDemandECP Editorial ServicesAGOSR