业务
信息安全
外包
安全管理
安全信息和事件管理
数据泄露
信息安全管理
认证信息安全经理
嵌入性
云安全计算
保安服务
计算机安全
计算机科学
网络安全策略
营销
财务
云计算
操作系统
社会学
人类学
作者
He Li,Sung-jin Yoo,William J. Kettinger
标识
DOI:10.1080/07421222.2021.1870390
摘要
This research examines the joint effects of information technology (IT) strategies and security investments on organizational security breaches. We focus on two forms of IT strategies: digitalization and embeddedness in IT outsourcing networks. Our longitudinal analysis of U.S. hospitals demonstrates that IT security investments reduce security breaches in less digitalized organizations but increase security breaches for highly digitalized organizations. Investing in technical network control security systems such as anti-virus and intrusion detection systems reduces external breaches. Implementing identity and access management security systems such as biometric scanning and user authentication decreases internal breaches but increases external breaches. However, organizations’ embeddedness in IT outsourcing networks weakens the impacts of these technologies investments on external breaches but amplifies the negative relationship between identity and access management security systems and internal breaches. Our results offer an alternative understanding of organizational IT security investments and explain contrary results found in prior studies. Practical guidelines on organizational IT security strategies are discussed.
科研通智能强力驱动
Strongly Powered by AbleSci AI