论文标题
高质量的信息安全管理是期刊:审查和研究议程
Information Security Management in High Quality IS Journals: A Review and Research Agenda
论文作者
论文摘要
在数字时代,信息资源的保护对于组织的可行性至关重要。信息安全管理(ISM)是一种保护功能,可保留在复杂而不断发展的安全威胁格局中运营的组织中信息资源的机密性,完整性和可用性。本文分析了ISM研究主题,方法和高质量理论是30年以来(直到2017年底)的期刊。尽管我们的审查发现,在ISM领域,只有不到1%的论文在过去的十年中,ISM出版物的数量以及新的新出现主题的数量急剧增加。此外,过去涉及主观论文的趋势已经逆转了经验验证的研究。我们对研究方法和方法的分析发现,ISM研究将由一次性调查而不是案例研究和行动研究主导。研究结果表明,尽管ISM研究多年来改善了其经验支持,但它仍然与组织实践相对脱节。
In the digital age, the protection of information resources is critical to the viability of organizations. Information Security Management (ISM) is a protective function that preserves the confidentiality, integrity and availability of information resources in organizations operating in a complex and evolving security threat landscape. This paper analyses ISM research themes, methods, and theories in high quality IS journals over a period of 30 years (up to the end of 2017). Although our review found that less than 1 percent of papers to be in the area of ISM, there has been a dramatic increase in the number of ISM publications as well as new emerging themes in the past decade. Further, past trends towards subjective-argumentative papers have reversed in favour of empirically validated research. Our analysis of research methods and approaches found ISM studies to be dominated by one-time surveys rather than case studies and action research. The findings suggest that although ISM research has improved its empirical backing over the years, it remains relatively disengaged from organisational practice.