Governing cybersecurity from the boardroom: challenges, drivers, and ways ahead

M Gale, I Bongiovanni, S Slapnicar - Computers & Security, 2022 - Elsevier
Overall, the responsibility to oversee cyber-risk management in modern organisations lies
with Boards of Directors. However, evidence suggests that boards are not nearly as …

The board's role in managing cybersecurity risks

RA Rothrock, J Kaplan… - MIT Sloan Management …, 2018 - search.proquest.com
Today, more than ever, the demands posed by issues of cybersecurity clash with both the
need for innovation and the clamor for productivity. Increasingly, cybersecurity risk includes …

Cybersecurity and information security–what goes where?

B Von Solms, R Von Solms - Information & Computer Security, 2018 - emerald.com
Purpose The purpose of this paper is to define cybersecurity and cybersecurity governance
in simplified terms–to explain to the boards of directors and executive management their …

Informing cybersecurity strategic commitment through top management perceptions: The role of institutional pressures

O Ogbanufe, DJ Kim, MC Jones - Information & management, 2021 - Elsevier
Given the financial consequences of security breaches, security risk management has
gained more attention in board rooms and garnered more involvement from top …

Academic research on the role of corporate governance and IT expertise in addressing cybersecurity breaches: Implications for practice, policy, and research

CC Hartmann, J Carmenate - Current issues in auditing, 2021 - publications.aaahq.org
Frequent cyber-attacks on organizations in the last decade have caught the attention of
practitioners and governance bodies, who have called for boards to take a more active role …

Perception of risk and the strategic impact of existing IT on information security strategy at board level

E McFadzean, JN Ezingeard, D Birchall - Online Information Review, 2007 - emerald.com
Purpose–Information security is becoming increasingly more important as organisations are
endangered by a variety of threats from both its internal and external environments. Many …

'What a waste of time': An examination of cybersecurity legitimacy

WA Cram, J D'Arcy - Information Systems Journal, 2023 - Wiley Online Library
Managers who oversee cybersecurity policies commonly rely on managerial
encouragement (eg, rewards) and employee characteristics (eg, attitude) to drive compliant …

A conceptual model for cybersecurity governance

S Yusif, A Hafeez-Baig - Journal of applied security research, 2021 - Taylor & Francis
Cybersecurity is a growing problem associated with everything an individual or an
organization does that is facilitated by the Internet. It is a multi-facetted program that can be …

What do we know about information security governance? “From the basement to the boardroom”: towards digital security governance

S Schinagl, A Shahim - Information & Computer Security, 2020 - emerald.com
Purpose This paper aims to review the information security governance (ISG) literature and
emphasises the tensions that exist at the intersection of the rapidly changing business …

Assessing the moderating effect of security technologies on employees compliance with cybersecurity control procedures

A Onumo, I Ullah-Awan, A Cullen - ACM Transactions on Management …, 2021 - dl.acm.org
The increase in cybersecurity threats and the challenges for organisations to protect their
information technology assets has made adherence to organisational security control …