Enterprise Information Systems Assurance and System Security
DOI: 10.4018/9781591409113.ch005
|View full text |Cite
|
Sign up to set email alerts
|

The Impact of the Sarbanes-Oxley (SOX) Act on Information Security

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2
1

Citation Types

2
3
0

Publication Types

Select...
2

Relationship

1
1

Authors

Journals

citations
Cited by 2 publications
(5 citation statements)
references
References 0 publications
2
3
0
Order By: Relevance
“…Our finding strongly resonates with those reported by extant studies in this context (Doherty and Fulford, 2006;Knapp et al, 2009;Cram et al, 2017). Organisations should regularly conduct exercises and training, which can provide employees with an awareness of cyber-security (Dhillon and Backhouse, 2000;Dhillon and Mishra, 2006). Our results matched with Haeussinger and Kranz (2013), who also noted that SETA exercises are capable of improving information security through increased awareness about potential IS risks and implementable ISPs.…”
Section: Discussionsupporting
confidence: 90%
See 3 more Smart Citations
“…Our finding strongly resonates with those reported by extant studies in this context (Doherty and Fulford, 2006;Knapp et al, 2009;Cram et al, 2017). Organisations should regularly conduct exercises and training, which can provide employees with an awareness of cyber-security (Dhillon and Backhouse, 2000;Dhillon and Mishra, 2006). Our results matched with Haeussinger and Kranz (2013), who also noted that SETA exercises are capable of improving information security through increased awareness about potential IS risks and implementable ISPs.…”
Section: Discussionsupporting
confidence: 90%
“…Therefore, managers should regularly assess the level of incumbent cyber-security and work towards continuous improvement goals (Webb et al, 2014). In this context, findings from our study echoed those reported by Boss et al (2009), Dhillon and Mishra (2006) and Herath and Rao (2009). Finally, senior managers must conduct regular evaluation of employees' compliance with those ISPs (Warkentin and Johnston, 2006a, b).…”
Section: Discussionsupporting
confidence: 69%
See 2 more Smart Citations
“…SOX impacts various aspects of the information systems discipline, such as project management, software development, IT governance, and data monitoring [Dhillon and Mishra 2006]. The software development process is becoming more formalized with SOX [Leih 2005] because compliance needs make development more process centric and encourage organizations to follow all the controls and documentation requirements.…”
Section: A Conceptual Framework Mapping Cobit With Development Wmentioning
confidence: 99%