IIUM Repository (IREP)

Disclosure of organizational information by employees on Facebook: Looking at the potential for information security risks

Abdul Molok , Nurul Nuha and Ahmad, Atif and Chang, Shanton (2011) Disclosure of organizational information by employees on Facebook: Looking at the potential for information security risks. In: 22nd Australasian Conference on Information Systems (ACIS), 30th Nov - 2nd Dec 2011, Sydney, Australia.

[img] PDF (Disclosure of organizational information by employees on Facebook: Looking at the potential for information security risks) - Published Version
Restricted to Registered users only

Download (162kB) | Request a copy

Abstract

Online social networking (OSN) is a global phenomenon and its use by employees has been reported to be detrimental to organizations. Nevertheless, OSN impacts on organizational information security are rarely discussed in academic literature. This study investigates the use of OSN sites by employees and work-related information disclosed on their personal pages that may jeopardize the security of organizational information. The paper presents the characteristics of work-related information that can be disclosed on Facebook, possibly has the potential to open the doorway for information security threats. It also discusses the qualitative findings from four Malaysian-based organizations under study. Across these four organizations, 22 employees who were active users of Facebook were interviewed to obtain their OSN experience, to explore information they disclosed online and the underlying reasons for doing so. The findings will facilitate our recommendation for organizations to minimize this issue by understanding the behavioural facets of information security.

Item Type: Conference or Workshop Item (Full Paper)
Additional Information: 5341/33079
Subjects: H Social Sciences > H Social Sciences (General) > H61.8 Communication of information
T Technology > T Technology (General) > T55.4 Industrial engineering.Management engineering. > T58.6 Management information systems
Kulliyyahs/Centres/Divisions/Institutes: Kulliyyah of Information and Communication Technology > Department of Information System
Kulliyyah of Information and Communication Technology > Department of Information System
Depositing User: Dr. Nurul Nuha Abdul Molok
Date Deposited: 29 Nov 2013 12:25
Last Modified: 29 Nov 2013 12:25
URI: http://irep.iium.edu.my/id/eprint/33079

Actions (login required)

View Item View Item

Downloads

Downloads per month over past year