李文立

个人信息Personal Information

教授

博士生导师

硕士生导师

性别:男

毕业院校:大连理工大学

学位:博士

所在单位:信息管理与信息系统研究所

学科:管理科学与工程

办公地点:管理与经济学部D501

电子邮箱:wlli@dlut.edu.cn

扫描关注

论文成果

当前位置: 中文主页 >> 科学研究 >> 论文成果

Using Galois Lattice to Represent and Analyze Information Security Policy Compliance

点击次数:

论文类型:会议论文

发表时间:2015-01-01

收录刊物:CPCI-S

页面范围:353-358

关键字:Compliance; Galois lattice; information security management; information security policy; two-mode network

摘要:Employees' noncompliance with the information security policy results in a large number of information security incidents in organizations. The information security managers need to understand and manage the noncompliance behaviors of employees. The representation and pattern of the information security noncompliance or compliance will help managers to gain insights on, and to counter effectively the threats originated from the employees. This study proposes a Compliance Galois Lattice Diagram (CGLD) for visually representing and analyzing the employees' compliance patterns. Six compliance patterns, namely, compliance outlier, compliance core and peripheral, compliance subgroup, compliance partition, multiple compliance containment and compliance equivalence, have been obtained from the CGLD. A comparative analysis of these patterns and the structural features identified from the network generated by the UCINET software reveals that fairly good consistency has been reached between them.