Personality traits and information security management: An empirical study of information security executives

Research output: Chapter in book/report/conference proceedingConference contributionResearchpeer review

Authors

View graph of relations

Details

Original languageEnglish
Title of host publicationInternational Conference on Information Systems, ICIS 2012
Pages1188-1209
Number of pages22
Publication statusPublished - 2012
EventInternational Conference on Information Systems, ICIS 2012 - Orlando, FL, United States
Duration: 16 Dec 201219 Dec 2012

Publication series

NameInternational Conference on Information Systems, ICIS 2012
Volume2

Abstract

Executives' behavior causes potential information security management risks and has a direct influence on the security level of information systems and management. This behavior depends on personality traits and other cognitive factors. First, a comprehensive literature review and a status quo analysis are presented. We consider the constructs of the Five Factor Model (FFM) as influence factors for attitudes towards technical and non-technical dimensions of information security management. Then, the hypothesized relationships are validated using empirical data from 174 information security executives. The results suggest that multiple facets of an information security executive's personality have a significant effect on his or her attitude towards selected information security management activities. For example, conscientiousness is positively related to a person's attitude towards the technical and organizational activities of information security. From these findings, theoretical and practical implications and recommendations are discussed.

Keywords

    Attitude, Five factor model, Information security executives, Personality traits, Theory of planned behavior

ASJC Scopus subject areas

Cite this

Personality traits and information security management: An empirical study of information security executives. / Uffen, Jörg; Guhr, Nadine; Breitner, Michael H.
International Conference on Information Systems, ICIS 2012. 2012. p. 1188-1209 (International Conference on Information Systems, ICIS 2012; Vol. 2).

Research output: Chapter in book/report/conference proceedingConference contributionResearchpeer review

Uffen, J, Guhr, N & Breitner, MH 2012, Personality traits and information security management: An empirical study of information security executives. in International Conference on Information Systems, ICIS 2012. International Conference on Information Systems, ICIS 2012, vol. 2, pp. 1188-1209, International Conference on Information Systems, ICIS 2012, Orlando, FL, United States, 16 Dec 2012.
Uffen, J., Guhr, N., & Breitner, M. H. (2012). Personality traits and information security management: An empirical study of information security executives. In International Conference on Information Systems, ICIS 2012 (pp. 1188-1209). (International Conference on Information Systems, ICIS 2012; Vol. 2).
Uffen J, Guhr N, Breitner MH. Personality traits and information security management: An empirical study of information security executives. In International Conference on Information Systems, ICIS 2012. 2012. p. 1188-1209. (International Conference on Information Systems, ICIS 2012).
Uffen, Jörg ; Guhr, Nadine ; Breitner, Michael H. / Personality traits and information security management : An empirical study of information security executives. International Conference on Information Systems, ICIS 2012. 2012. pp. 1188-1209 (International Conference on Information Systems, ICIS 2012).
Download
@inproceedings{aa53432e3d1049d68a17fdd0056810a4,
title = "Personality traits and information security management: An empirical study of information security executives",
abstract = "Executives' behavior causes potential information security management risks and has a direct influence on the security level of information systems and management. This behavior depends on personality traits and other cognitive factors. First, a comprehensive literature review and a status quo analysis are presented. We consider the constructs of the Five Factor Model (FFM) as influence factors for attitudes towards technical and non-technical dimensions of information security management. Then, the hypothesized relationships are validated using empirical data from 174 information security executives. The results suggest that multiple facets of an information security executive's personality have a significant effect on his or her attitude towards selected information security management activities. For example, conscientiousness is positively related to a person's attitude towards the technical and organizational activities of information security. From these findings, theoretical and practical implications and recommendations are discussed.",
keywords = "Attitude, Five factor model, Information security executives, Personality traits, Theory of planned behavior",
author = "J{\"o}rg Uffen and Nadine Guhr and Breitner, {Michael H.}",
note = "Copyright: Copyright 2013 Elsevier B.V., All rights reserved.; International Conference on Information Systems, ICIS 2012 ; Conference date: 16-12-2012 Through 19-12-2012",
year = "2012",
language = "English",
isbn = "9781627486040",
series = "International Conference on Information Systems, ICIS 2012",
pages = "1188--1209",
booktitle = "International Conference on Information Systems, ICIS 2012",

}

Download

TY - GEN

T1 - Personality traits and information security management

T2 - International Conference on Information Systems, ICIS 2012

AU - Uffen, Jörg

AU - Guhr, Nadine

AU - Breitner, Michael H.

N1 - Copyright: Copyright 2013 Elsevier B.V., All rights reserved.

PY - 2012

Y1 - 2012

N2 - Executives' behavior causes potential information security management risks and has a direct influence on the security level of information systems and management. This behavior depends on personality traits and other cognitive factors. First, a comprehensive literature review and a status quo analysis are presented. We consider the constructs of the Five Factor Model (FFM) as influence factors for attitudes towards technical and non-technical dimensions of information security management. Then, the hypothesized relationships are validated using empirical data from 174 information security executives. The results suggest that multiple facets of an information security executive's personality have a significant effect on his or her attitude towards selected information security management activities. For example, conscientiousness is positively related to a person's attitude towards the technical and organizational activities of information security. From these findings, theoretical and practical implications and recommendations are discussed.

AB - Executives' behavior causes potential information security management risks and has a direct influence on the security level of information systems and management. This behavior depends on personality traits and other cognitive factors. First, a comprehensive literature review and a status quo analysis are presented. We consider the constructs of the Five Factor Model (FFM) as influence factors for attitudes towards technical and non-technical dimensions of information security management. Then, the hypothesized relationships are validated using empirical data from 174 information security executives. The results suggest that multiple facets of an information security executive's personality have a significant effect on his or her attitude towards selected information security management activities. For example, conscientiousness is positively related to a person's attitude towards the technical and organizational activities of information security. From these findings, theoretical and practical implications and recommendations are discussed.

KW - Attitude

KW - Five factor model

KW - Information security executives

KW - Personality traits

KW - Theory of planned behavior

UR - http://www.scopus.com/inward/record.url?scp=84886497179&partnerID=8YFLogxK

M3 - Conference contribution

AN - SCOPUS:84886497179

SN - 9781627486040

T3 - International Conference on Information Systems, ICIS 2012

SP - 1188

EP - 1209

BT - International Conference on Information Systems, ICIS 2012

Y2 - 16 December 2012 through 19 December 2012

ER -

By the same author(s)