Repository logo
  • English
  • Deutsch
  • Español
  • Français
Log In
New user? Click here to register.
  1. Home
  2. Browse by Author

Browsing by Author "Rufizah Abdul Munir"

Filter results by typing the first few letters
Now showing 1 - 1 of 1
  • Results Per Page
  • Sort Options
  • Loading...
    Thumbnail Image
    Some of the metrics are blocked by your 
    consent settings
    Publication
    Top management engagement in information security : multiple-case studies of Malaysian public sector
    (Kuala Lumpur : Kulliyyah of Information and Communication Technology, International Islamic University Malaysia, 2024, 2024)
    Rufizah Abdul Munir
    ;
    ;
    Shuhaili Talib, Ph.D
    ;
    Nurul Nuha Abdul Molok, Ph.D
    Organisations that rely heavily on ICT face greater challenges in protecting their information assets. Technical solutions alone cannot guarantee the security of an organisation’s information. As human is the weakest link, numerous studies on information security now incorporate human factors as part of the information security solution. As security is integral to corporate governance, top-level commitment and management roles are indispensable to forming good information security governance (ISG). Through this governance, the sustainability of information security activities in organisations could be achieved. However, due to top management’s common perception of information security as a technical and operational concern rather than a business matter, the responsibility for its implementation is often assigned solely to the information security team. This approach has led to challenges in fostering a collaborative, organisation-wide effort towards information security. Therefore, this study aims to gain clarity on the phenomenon of top management driving information security initiatives in the Malaysian government. It will examine the factors that influence their engagement in information security and seek to explore the issues related to ISG. This study employs qualitative research methodology with an inductive approach. The multiple-case study is used as a strategy to investigate the topic under study. Using purposive sampling, interviews were conducted at four (4) public sector organisations involving 27 participants. The results indicate that Regulatory Forces (External Factor), Informal Education (Personal Factor), and On-the-job Exposure (Personal Factor) are the most influential factors on top management engagement in information security. The application of the information security engagement factors led to the establishment of the research model of the study. This study proposes the extension of Malaysia’s cyber security framework (RAKKSSA) and its accompanying guidelines to demonstrate the research model’s viability. The extension focuses on top management competency, an area where the current RAKKSSA is deficient. The extended RAKKSSA improves the overall comprehensiveness of the framework. It guides all levels of government agency personnel with the essential skillsets, from governing information security initiatives to carrying out security activities within their respective organisations.
      33  11

This site contains copyrighted unpublished research owned by International Islamic University Malaysia (IIUM) and(or) the owner of the research. No part of any material contained in or derived from any unpublished research may be used without written permission of the copyright holders or due acknowledgement.

Contact:
  • Dar al-Hikmah Library
    International Islamic University Malaysia (IIUM)
    P.O Box 10, 50728
    Kuala Lumpur
  • +603-64214829/4813
  • studentrepo@iium.edu.my
Follow Us:
Copyright © 2024: Dar al-Hikmah Library, IIUM
by CDSOL