{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,24]],"date-time":"2026-07-24T00:09:33Z","timestamp":1784851773255,"version":"3.55.0"},"reference-count":128,"publisher":"Springer Science and Business Media LLC","issue":"2","license":[{"start":{"date-parts":[[2022,8,2]],"date-time":"2022-08-02T00:00:00Z","timestamp":1659398400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2022,8,2]],"date-time":"2022-08-02T00:00:00Z","timestamp":1659398400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"funder":[{"DOI":"10.13039\/501100001777","name":"The University of Wollongong","doi-asserted-by":"crossref","id":[{"id":"10.13039\/501100001777","id-type":"DOI","asserted-by":"crossref"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Ann Oper Res"],"published-print":{"date-parts":[[2025,7]]},"abstract":"<jats:title>Abstract<\/jats:title>\n          <jats:p>Data breaches have become a formidable challenge for business operations in the twenty-first century. The emergence of big data in the ever-growing digital economy has created the necessity to secure critical organizational information. The lack of cybersecurity awareness exposes organizations to potential cyber threats. Thus, this research aims to identify the various dimensions of cybersecurity awareness capabilities. Drawing on the dynamic capabilities framework, the findings of the study show personnel (knowledge, attitude and learning), management (training, culture and strategic orientation) and infrastructure capabilities (technology and data governance) as thematic dimensions to tackle cybersecurity awareness challenges.\n<\/jats:p>","DOI":"10.1007\/s10479-022-04844-8","type":"journal-article","created":{"date-parts":[[2022,8,2]],"date-time":"2022-08-02T13:12:20Z","timestamp":1659445940000},"page":"673-698","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":33,"title":["Reconceptualizing cybersecurity awareness capability in the data-driven digital economy"],"prefix":"10.1007","volume":"350","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-2050-9985","authenticated-orcid":false,"given":"Shahriar","family":"Akter","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mohammad Rajib","family":"Uddin","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Shahriar","family":"Sajib","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Wai Jin Thomas","family":"Lee","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3118-5557","authenticated-orcid":false,"given":"Katina","family":"Michael","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Mohammad Alamgir","family":"Hossain","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2022,8,2]]},"reference":[{"issue":"10","key":"4844_CR1","doi-asserted-by":"publisher","first-page":"1011","DOI":"10.1002\/smj.331","volume":"24","author":"R Adner","year":"2003","unstructured":"Adner, R., & Helfat, C. E. (2003). Corporate effects and dynamic managerial capabilities. Strategic Management Journal, 24(10), 1011\u20131125.","journal-title":"Strategic Management Journal"},{"key":"4844_CR2","unstructured":"Agilient (2019). Cybercrime costs Australian businesses $29 billion each year. Retrieved October 17, 2021 from https:\/\/www.agilient.com.au\/2019\/10\/23\/cybercrime-costs-australian-businesses-29-billion-each-year\/"},{"issue":"3","key":"4844_CR3","doi-asserted-by":"publisher","first-page":"125","DOI":"10.1080\/23742917.2019.1698178","volume":"4","author":"E Agyepong","year":"2020","unstructured":"Agyepong, E., Cherdantseva, Y., Reinecke, P., & Burnap, P. (2020). Challenges and performance metrics for security operations center analysts: A systematic review. Journal of Cyber Security Technology, 4(3), 125\u2013152.","journal-title":"Journal of Cyber Security Technology"},{"key":"4844_CR4","doi-asserted-by":"publisher","first-page":"361","DOI":"10.1016\/j.procs.2015.12.151","volume":"72","author":"AR Ahlan","year":"2015","unstructured":"Ahlan, A. R., Lubis, M., & Lubis, A. R. (2015). Information security awareness at the knowledge-based institution: Its antecedents and measures. Procedia Computer Science, 72, 361\u2013373.","journal-title":"Procedia Computer Science"},{"key":"4844_CR5","doi-asserted-by":"crossref","unstructured":"Ahmad, N., Asma\u2019Mokhtar, U., Fauzi, W. F. P., Othman, Z. A., Yeop, Y. H., & Abdullah, S. N. H. S. (2018). Cyber Security Situational Awareness among Parents. In 2018 cyber resilience conference (CRC), EEE (pp. 1\u20133).","DOI":"10.1109\/CR.2018.8626830"},{"issue":"6","key":"4844_CR6","doi-asserted-by":"publisher","first-page":"1665","DOI":"10.1108\/INTR-10-2019-0400","volume":"30","author":"N Akdemir","year":"2020","unstructured":"Akdemir, N., & Lawless, C. J. (2020). Exploring the human factor in cyber-enabled and cyber-dependent crime victimization: A lifestyle routine activities approach. Internet Research, 30(6), 1665\u20131687. https:\/\/doi.org\/10.1108\/INTR-10-2019-0400","journal-title":"Internet Research"},{"issue":"2","key":"4844_CR7","doi-asserted-by":"publisher","first-page":"173","DOI":"10.1007\/s12525-016-0219-0","volume":"26","author":"S Akter","year":"2016","unstructured":"Akter, S., & Wamba, S. F. (2016). Big data analytics in E-commerce: A systematic review and agenda for future research. Electronic Markets, 26(2), 173\u2013194.","journal-title":"Electronic Markets"},{"key":"4844_CR8","doi-asserted-by":"publisher","DOI":"10.1007\/s10479-020-03620-w","author":"S Akter","year":"2020","unstructured":"Akter, S., Michael, K., Uddin, M. R., McCarthy, G., & Rahman, M. (2020). Transforming business using digital innovations: The application of AI, blockchain, cloud and data analytics. Annals of Operations Research. https:\/\/doi.org\/10.1007\/s10479-020-03620-w","journal-title":"Annals of Operations Research"},{"issue":"1","key":"4844_CR9","doi-asserted-by":"publisher","first-page":"64","DOI":"10.1080\/12460125.2016.1187397","volume":"25","author":"I Alhassan","year":"2016","unstructured":"Alhassan, I., Sammon, D., & Daly, M. (2016). Data governance activities: An analysis of the literature. Journal of Decision Systems, 25(1), 64\u201375.","journal-title":"Journal of Decision Systems"},{"issue":"2","key":"4844_CR10","doi-asserted-by":"publisher","first-page":"660","DOI":"10.20533\/ijisr.2042.4639.2016.0076","volume":"6","author":"F Alotaibi","year":"2016","unstructured":"Alotaibi, F., Furnell, S., Stengel, I., & Papadaki, M. (2016). A review of using gaming technology for cyber-security awareness. International Journal Information Security Research, 6(2), 660\u2013666.","journal-title":"International Journal Information Security Research"},{"issue":"4","key":"4844_CR11","doi-asserted-by":"publisher","first-page":"40","DOI":"10.4018\/IJEGR.2021100103","volume":"17","author":"MSA Alqahtani","year":"2021","unstructured":"Alqahtani, M. S. A., & Erfani, E. (2021). Exploring the relationship between technology adoption and cyber security compliance: A quantitative study of UTAUT2 model. International Journal of Electronic Government Research, 17(4), 40\u201362.","journal-title":"International Journal of Electronic Government Research"},{"issue":"1","key":"4844_CR12","doi-asserted-by":"publisher","first-page":"1650007","DOI":"10.1142\/S0219649216500076","volume":"15","author":"S Al-Janabi","year":"2016","unstructured":"Al-Janabi, S., & Al-Shourbaji, I. (2016). A study of cyber security awareness in educational environment in the middle east. Journal of Information & Knowledge Management, 15(1), 1650007.","journal-title":"Journal of Information & Knowledge Management"},{"issue":"3","key":"4844_CR13","doi-asserted-by":"publisher","first-page":"534","DOI":"10.35940\/ijeat.C4775.029320","volume":"9","author":"I Al-Shanfari","year":"2020","unstructured":"Al-Shanfari, I., Yassin, W., & Abdullah, R. (2020). Identify of factors affecting information security awareness and weight analysis process. International Journal of Engineering and Advanced Technology, 9(3), 534\u2013542.","journal-title":"International Journal of Engineering and Advanced Technology"},{"key":"4844_CR14","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.102003","volume":"98","author":"M Alshaikh","year":"2020","unstructured":"Alshaikh, M. (2020). Developing cybersecurity culture to influence employee behavior: A practice perspective. Computers & Security, 98, 102003. https:\/\/doi.org\/10.1016\/j.cose.2020.102003","journal-title":"Computers & Security"},{"key":"4844_CR15","unstructured":"Anant, V., Banerjee, S., Li, K., & Boehm, J. (2020). A dual cybersecurity mindset for the next normal. Mckinsey Digital, Retrieved October 17, 2021 from https:\/\/www.mckinsey.com\/business-functions\/risk\/our-insights\/a-dual-cybersecurity-mindset-for-the-next-normal?cid=other-eml-alt-mip-mck&hlkid=11567b190b2e4d57a8fe5ec989b8b49c&hctky=10302697&hdpid=257a39db-a247-4b1f-b50d-84c719d6cbad"},{"issue":"1","key":"4844_CR16","doi-asserted-by":"publisher","first-page":"2","DOI":"10.1108\/JSIT-02-(2018)-0028","volume":"21","author":"UD Ani","year":"2019","unstructured":"Ani, U. D., He, H., & Tiwari, A. (2019). Human factor security: Evaluating the cybersecurity capacity of the industrial workforce. Journal of Systems and Information Technology, 21(1), 2\u201335. https:\/\/doi.org\/10.1108\/JSIT-02-(2018)-0028","journal-title":"Journal of Systems and Information Technology"},{"key":"4844_CR17","doi-asserted-by":"publisher","first-page":"437","DOI":"10.1016\/j.chb.2016.12.040","volume":"69","author":"M Anwar","year":"2017","unstructured":"Anwar, M., He, W., Ash, I., Yuan, X., Li, L., & Xu, L. (2017). Gender difference and employees\u2019 cybersecurity behaviors. Computers in Human Behavior, 69, 437\u2013443.","journal-title":"Computers in Human Behavior"},{"key":"4844_CR18","doi-asserted-by":"crossref","unstructured":"Apruzzese, G., Colajanni, M., Ferretti, L., Guido, A., & Marchetti, M. (2018). On the effectiveness of machine and deep learning for cyber security. In 2018 10th international conference on cyber conflict (CyCon), IEEE (pp. 371\u2013390).","DOI":"10.23919\/CYCON.2018.8405026"},{"key":"4844_CR19","doi-asserted-by":"publisher","first-page":"185","DOI":"10.1016\/j.chb.2016.02.065","volume":"60","author":"NAG Arachchilage","year":"2016","unstructured":"Arachchilage, N. A. G., Love, S., & Beznosov, K. (2016). Phishing threat avoidance behaviour: An empirical investigation. Computers in Human Behavior, 60, 185\u2013197.","journal-title":"Computers in Human Behavior"},{"key":"4844_CR20","unstructured":"Bada, M., Sasse, A. M. & Nurse, J. R. C. (2019). Cyber security awareness campaigns: Why do they fail to change behaviour?. arXiv preprint arXiv:1901.02672."},{"issue":"1","key":"4844_CR21","doi-asserted-by":"publisher","first-page":"99","DOI":"10.1177\/014920639101700108","volume":"17","author":"J Barney","year":"1991","unstructured":"Barney, J. (1991). Firm resources and sustained competitive advantage. Journal of Management, 17(1), 99\u2013120.","journal-title":"Journal of Management"},{"issue":"2","key":"4844_CR22","doi-asserted-by":"publisher","first-page":"138","DOI":"10.5465\/amp.2012.0107","volume":"27","author":"JAY Barney","year":"2013","unstructured":"Barney, J. A. Y., & Felin, T. (2013). What are microfoundations? Academy of Management Perspectives, 27(2), 138\u2013155.","journal-title":"Academy of Management Perspectives"},{"key":"4844_CR23","doi-asserted-by":"publisher","first-page":"55","DOI":"10.1016\/j.tele.2019.03.003","volume":"41","author":"S Barth","year":"2019","unstructured":"Barth, S., de Jong, M. D., Junger, M., Hartel, P. H., & Roppelt, J. C. (2019). Putting the privacy paradox to the test: Online privacy and security behaviors among users with technical knowledge, privacy awareness, and financial resources. Telematics and Informatics, 41, 55\u201369.","journal-title":"Telematics and Informatics"},{"key":"4844_CR24","doi-asserted-by":"publisher","first-page":"145","DOI":"10.1016\/j.cose.2017.04.009","volume":"68","author":"S Bauer","year":"2017","unstructured":"Bauer, S., Bernroider, E. W., & Chudzikowski, K. (2017). Prevention is better than cure! Designing information security awareness programs to overcome users\u2019 non-compliance with information security policies in banks. Computers & Security, 68, 145\u2013159.","journal-title":"Computers & Security"},{"issue":"3","key":"4844_CR25","doi-asserted-by":"publisher","first-page":"44","DOI":"10.1145\/3130515.3130519","volume":"48","author":"S Bauer","year":"2017","unstructured":"Bauer, S., & Bernroider, E. W. (2017). From information security awareness to reasoned compliant action: Analyzing information security policy compliance in a large banking organization. ACM SIGMIS Database: THe DATABASE for Advances in Information Systems, 48(3), 44\u201368.","journal-title":"ACM SIGMIS Database: THe DATABASE for Advances in Information Systems"},{"issue":"6","key":"4844_CR26","doi-asserted-by":"publisher","first-page":"797","DOI":"10.1016\/j.lrp.2017.08.002","volume":"51","author":"D Bendig","year":"2018","unstructured":"Bendig, D., Strese, S., Flatten, T.C., da Costa, M.E.S. and Brettel, M. (2018). On micro foundations of dynamic capabilities: A multi-level perspective based on CEO personality and knowledge-based capital. Long Range Planning, 51(6), pp.797\u2013814.","journal-title":"Long Range Planning"},{"key":"4844_CR27","doi-asserted-by":"crossref","unstructured":"Bitton, R., Boymgold, K., Puzis, R., & Shabtai, A. (2020). Evaluating the information security awareness of smartphone users. In Proceedings of the (2020) CHI conference on human factors in computing systems (pp. 1\u201313).","DOI":"10.1145\/3313831.3376385"},{"issue":"1","key":"4844_CR28","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1186\/s42400-018-0017-4","volume":"1","author":"F B\u00f6hm","year":"2018","unstructured":"B\u00f6hm, F., Menges, F., & Pernul, G. (2018). Graph-based visual analytics for cyber threat intelligence. Cybersecurity, 1(1), 1\u201319.","journal-title":"Cybersecurity"},{"key":"4844_CR29","unstructured":"Brandenburg, R., & Paul, M. (2020). Cybersecurity for a remote workforce, July 23 2020, Retrieved October 17, 2021 from https:\/\/sloanreview.mit.edu\/article\/cybersecurity-for-a-remote-workforce\/"},{"key":"4844_CR30","unstructured":"Brooks, C. (2021). Alarming cybersecurity stats: What you need to know for 2021. Retrieved October 17, 2021 from https:\/\/www.forbes.com\/sites\/chuckbrooks\/2021\/03\/02\/alarming-cybersecurity-stats-------what-you-need-to-know-for-2021\/?sh=67255f5058d3"},{"key":"4844_CR31","unstructured":"Brown, A. (2021). Cyber security attacks on the rise: Report. Retrieved October 17, 2021 from https:\/\/www.forbesadvocate.com.au\/story\/7430824\/cyber-security-attacks-on-the-rise-report\/"},{"issue":"6","key":"4844_CR32","doi-asserted-by":"publisher","first-page":"8","DOI":"10.1016\/S1361-3723(15)30046-4","volume":"2016","author":"T Caldwell","year":"2016","unstructured":"Caldwell, T. (2016). Making security awareness training work. Computer Fraud & Security, 2016(6), 8\u201314.","journal-title":"Computer Fraud & Security"},{"key":"4844_CR33","doi-asserted-by":"publisher","unstructured":"Cains, M.G., Flora, L., Taber, D., King, Z. and Henshel, D.S.( 2021). Defining cyber security and cyber security risk within a multidisciplinary context using expert elicitation. Risk Analysis.\u00a0https:\/\/doi.org\/10.1111\/risa.13687","DOI":"10.1111\/risa.13687"},{"issue":"3","key":"4844_CR34","doi-asserted-by":"publisher","first-page":"11","DOI":"10.1080\/08874417.2015.11645767","volume":"55","author":"YAN Chen","year":"2015","unstructured":"Chen, Y. A. N., Ramamurthy, K. R. A. M., & Wen, K. W. (2015). Impacts of comprehensive information security programs on information security culture. Journal of Computer Information Systems, 55(3), 11\u201319.","journal-title":"Journal of Computer Information Systems"},{"key":"4844_CR35","doi-asserted-by":"publisher","DOI":"10.1016\/j.chb.2020.106255","volume":"106","author":"DP David","year":"2020","unstructured":"David, D. P., Keupp, M. M., & Mermoud, A. (2020). Knowledge absorption for cyber-security: The role of human beliefs. Computers in Human Behavior, 106, 106255.","journal-title":"Computers in Human Behavior"},{"issue":"2","key":"4844_CR36","doi-asserted-by":"publisher","first-page":"139","DOI":"10.1108\/ICS-12-2015-0048","volume":"24","author":"A Da Veiga","year":"2016","unstructured":"Da Veiga, A. (2016). Comparing the information security culture of employees who had read the information security policy and those who had not. Information & Computer Security, 24(2), 139\u2013151. https:\/\/doi.org\/10.1108\/ICS-12-2015-0048","journal-title":"Information & Computer Security"},{"key":"4844_CR37","first-page":"1","volume":"15","author":"K De Swert","year":"2012","unstructured":"De Swert, K. (2012). Calculating inter-coder reliability in media content analysis using Krippendorff\u2019s alpha. Center for Politics and Communication, 15, 1\u201315.","journal-title":"Center for Politics and Communication"},{"key":"4844_CR38","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.101747","volume":"92","author":"R Diesch","year":"2020","unstructured":"Diesch, R., Pfaff, M., & Krcmar, H. (2020). A comprehensive model of information security factors for decision-makers. Computers & Security, 92, 101747.","journal-title":"Computers & Security"},{"issue":"7","key":"4844_CR39","doi-asserted-by":"publisher","first-page":"104","DOI":"10.1007\/s10916-017-0752-1","volume":"41","author":"JM Ehrenfeld","year":"2017","unstructured":"Ehrenfeld, J. M. (2017). Wannacry, cybersecurity and health information technology: A time to act. Journal of Medical Systems, 41(7), 104.","journal-title":"Journal of Medical Systems"},{"issue":"10\u201311","key":"4844_CR40","doi-asserted-by":"publisher","first-page":"1105","DOI":"10.1002\/1097-0266(200010\/11)21:10\/11<1105::AID-SMJ133>3.0.CO;2-E","volume":"21","author":"KM Eisenhardt","year":"2000","unstructured":"Eisenhardt, K. M., & Martin, J. A. (2000). Dynamic capabilities: What are they? Strategic Management Journal, 21(10\u201311), 1105\u20131121.","journal-title":"Strategic Management Journal"},{"issue":"1","key":"4844_CR41","first-page":"358","volume":"18","author":"P Eugen","year":"2018","unstructured":"Eugen, P., & Petru\u0163, D. (2018). Exploring the new era of cybersecurity governance. Ovidius University Annals, Economic Sciences Series, 18(1), 358\u2013363.","journal-title":"Ovidius University Annals, Economic Sciences Series"},{"issue":"8","key":"4844_CR42","doi-asserted-by":"publisher","first-page":"1351","DOI":"10.1111\/j.1467-6486.2012.01052.x","volume":"49","author":"T Felin","year":"2012","unstructured":"Felin, T., Foss, N.J., Heimeriks, K.H. and Madsen, T.L. (2012). Microfoundations of routines and capabilities: Individuals, processes, and structure. Journal of Management Studies, 49(8), pp. 1351\u20131374.","journal-title":"Journal of Management Studies"},{"issue":"1","key":"4844_CR43","doi-asserted-by":"publisher","first-page":"575","DOI":"10.5465\/19416520.2015.1007651","volume":"9","author":"T Felin","year":"2015","unstructured":"Felin, T., Foss, N. J., & Ployhart, R. E. (2015). The microfoundations movement in strategy and organization theory. Academy of Management Annals, 9(1), 575\u2013632.","journal-title":"Academy of Management Annals"},{"issue":"5","key":"4844_CR44","doi-asserted-by":"publisher","first-page":"1413","DOI":"10.1177\/0149206310390218","volume":"37","author":"NJ Foss","year":"2011","unstructured":"Foss, N.J. (2011). Invited editorial: Why micro-foundations for resource-based theory are needed and what they may look like. Journal of management, 37(5), pp. 1413\u20131428.","journal-title":"Journal of management"},{"key":"4844_CR45","doi-asserted-by":"publisher","unstructured":"Gandhi, A. (2017). Quantitative assessment of information security awareness on informatics students in a university. In Proceedings of the (2017) International conference on information technology (346\u2013350). https:\/\/doi.org\/10.1145\/3176653.3176728","DOI":"10.1145\/3176653.3176728"},{"issue":"1","key":"4844_CR46","doi-asserted-by":"publisher","first-page":"113","DOI":"10.2307\/2666981","volume":"45","author":"G Gavetti","year":"2000","unstructured":"Gavetti, G., & Levinthal, D. (2000). Looking forward and looking backward: Cognitive and experiential search. Administrative Science Quarterly, 45(1), 113\u2013137.","journal-title":"Administrative Science Quarterly"},{"issue":"3","key":"4844_CR47","doi-asserted-by":"publisher","first-page":"259","DOI":"10.1108\/ICS-12-2015-0046","volume":"25","author":"N Gcaza","year":"2017","unstructured":"Gcaza, N., von Solms, R., Grobler, M. M., & van Vuuren, J. J. (2017). A general morphological analysis: Delineating a cyber-security culture. Information & Computer Security, 25(3), 259\u2013278. https:\/\/doi.org\/10.1108\/ICS-12-2015-0046","journal-title":"Information & Computer Security"},{"key":"4844_CR48","doi-asserted-by":"publisher","first-page":"739","DOI":"10.1007\/978-981-10-8681-6_67","volume-title":"International conference on computer networks and communication technologies","author":"B Geluvaraj","year":"2019","unstructured":"Geluvaraj, B., Satwik, P. M., & Kumar, T. A. (2019). The future of cybersecurity: Major role of artificial intelligence, machine learning, and deep learning in cyberspace. International conference on computer networks and communication technologies (pp. 739\u2013747). Springer."},{"key":"4844_CR49","doi-asserted-by":"crossref","unstructured":"Glaspie, H. W., & Karwowski, W. (2017). Human factors in information security culture: A literature review. In International conference on applied human factors and ergonomics Springer, Cham (pp. 269\u2013280).","DOI":"10.1007\/978-3-319-60585-2_25"},{"key":"4844_CR50","unstructured":"Gran\u00e5sen, M., Huskaj, G., & Stefan, V. (2019). Data collection and research in CDXs: Command and control, cyber situational awareness and intelligence perspectives on cyber defense. In 24th international command and control research and technology symposium (ICCRTS), 29\u201331 October. International Command and Control Institute, Laurel, USA."},{"issue":"1","key":"4844_CR51","doi-asserted-by":"publisher","first-page":"121","DOI":"10.1007\/s10111-015-0350-2","volume":"18","author":"M Gran\u00e5sen","year":"2016","unstructured":"Gran\u00e5sen, M., & Andersson, D. (2016). Measuring team effectiveness in cyber-defense exercises: A cross-disciplinary case study. Cognition, Technology & Work, 18(1), 121\u2013143.","journal-title":"Cognition, Technology & Work"},{"issue":"1","key":"4844_CR52","first-page":"262","volume":"12","author":"LJ Hadlington","year":"2018","unstructured":"Hadlington, L. J. (2018). Employees attitudes towards cyber security and risky online behaviours: An empirical assessment in the United Kingdom. International Journal of Cyber Criminology, 12(1), 262\u2013274.","journal-title":"International Journal of Cyber Criminology"},{"key":"4844_CR53","doi-asserted-by":"publisher","first-page":"103","DOI":"10.1145\/3210530.3210538","volume":"49","author":"B Hanus","year":"2018","unstructured":"Hanus, B., Windsor, J. C., & Wu, Y. (2018). Definition and multidimensionality of security awareness: Close encounters of the second order. ACM SIGMIS Database: THe DATABASE for Advances in Information Systems, 49, 103\u2013133.","journal-title":"ACM SIGMIS Database: THe DATABASE for Advances in Information Systems"},{"key":"4844_CR54","doi-asserted-by":"publisher","first-page":"165","DOI":"10.1016\/j.ijinfomgt.2018.07.013","volume":"43","author":"H Haqaf","year":"2018","unstructured":"Haqaf, H., & Koyuncu, M. (2018). Understanding key skills for information security managers. International Journal of Information Management, 43, 165\u2013172.","journal-title":"International Journal of Information Management"},{"issue":"4","key":"4844_CR55","doi-asserted-by":"publisher","first-page":"249","DOI":"10.1080\/10919392.2019.1611528","volume":"29","author":"W He","year":"2019","unstructured":"He, W., & Zhang, Z. (2019). Enterprise cybersecurity training and awareness programs: Recommendations for success. Journal of Organizational Computing and Electronic Commerce, 29(4), 249\u2013257.","journal-title":"Journal of Organizational Computing and Electronic Commerce"},{"issue":"6","key":"4844_CR56","doi-asserted-by":"publisher","first-page":"831","DOI":"10.1002\/smj.2247","volume":"36","author":"CE Helfat","year":"2015","unstructured":"Helfat, C. E., & Peteraf, M. A. (2015). Managerial cognitive capabilities and the microfoundations of dynamic capabilities. Strategic Management Journal, 36(6), 831\u2013850.","journal-title":"Strategic Management Journal"},{"issue":"5","key":"4844_CR57","doi-asserted-by":"publisher","first-page":"1281","DOI":"10.1177\/0149206314561301","volume":"41","author":"CE Helfat","year":"2015","unstructured":"Helfat, C. E., & Martin, J. A. (2015). Dynamic managerial capabilities: Review and assessment of managerial impact on strategic change. Journal of Management, 41(5), 1281\u20131312.","journal-title":"Journal of Management"},{"key":"4844_CR58","doi-asserted-by":"crossref","unstructured":"Holdsworth, J., & Apeh, E. (2017). An effective immersive cyber security awareness learning platform for businesses in the hospitality sector. In 2017 IEEE 25th international requirements engineering conference workshops (REW), IEEE (pp. 111\u2013117).","DOI":"10.1109\/REW.2017.47"},{"key":"4844_CR59","unstructured":"Horenbeeck, V. M. (2017). The key to better cybersecurity: Keep employee rules simple. Retrieved October 17.2021 from https:\/\/hbr.org\/2017\/11\/the-key-to-better-cybersecurity-keep-employee-rules-simple"},{"key":"4844_CR60","doi-asserted-by":"crossref","unstructured":"Hyla, T., & Fabisiak, L. (2020). Measuring cyber security awareness within groups of medical professionals in Poland. In Proceedings of the 53rd Hawaii international conference on system sciences.","DOI":"10.24251\/HICSS.2020.473"},{"key":"4844_CR61","doi-asserted-by":"crossref","unstructured":"Karjalainen, M., Siponen, M., & Sarker, S. (2020). Toward a stage theory of the development of employees\u2019 information security behavior. Computers & Security, 101782.","DOI":"10.1016\/j.cose.2020.101782"},{"key":"4844_CR62","doi-asserted-by":"publisher","first-page":"663","DOI":"10.1016\/j.cose.2017.08.001","volume":"70","author":"D Ki-Aries","year":"2017","unstructured":"Ki-Aries, D., & Faily, S. (2017). Persona-centred information security awareness. Computers & Security, 70, 663\u2013674.","journal-title":"Computers & Security"},{"issue":"7","key":"4844_CR63","doi-asserted-by":"publisher","first-page":"8","DOI":"10.1016\/S1361-3723(17)30059-3","volume":"2017","author":"J Kim","year":"2017","unstructured":"Kim, J. (2017). Cyber-security in government: Reducing the risk. Computer Fraud & Security, 2017(7), 8\u201311.","journal-title":"Computer Fraud & Security"},{"key":"4844_CR64","unstructured":"Khadem, N. (2021). Are Australians at a 'turning point' on cybersecurity or still unprepared?\u2014ABC News, retrieved October 17, 2021 from https:\/\/www.abc.net.au\/news\/2021-01-11\/australians-turning-point-on-cyber-security-cyberattacks-crime\/13018884"},{"key":"4844_CR65","doi-asserted-by":"publisher","unstructured":"Kolevski, D., Michael, K., Abbas, R. & Freeman, M. (2021). Cloud data breach disclosures: The consumer and their personally identifiable information (PII)?. In\u00a02021 IEEE Conference on norbert wiener in the 21st century (21CW) (pp. 1\u20139). IEEE. https:\/\/doi.org\/10.1109\/21CW48944.2021.9532579","DOI":"10.1109\/21CW48944.2021.9532579"},{"issue":"9","key":"4844_CR66","doi-asserted-by":"publisher","first-page":"3065","DOI":"10.3390\/app10093065","volume":"10","author":"A Kova\u010devi\u0107","year":"2020","unstructured":"Kova\u010devi\u0107, A., & Radenkovi\u0107, S. D. (2020). SAWIT\u2014Security awareness improvement tool in the workplace. Applied Sciences, 10(9), 3065.","journal-title":"Applied Sciences"},{"issue":"19","key":"4844_CR67","doi-asserted-by":"publisher","first-page":"163","DOI":"10.1016\/j.ifacol.2019.12.168","volume":"52","author":"BJ Knox","year":"2019","unstructured":"Knox, B. J., Lugo, R. G., & S\u00fctterlin, S. (2019). Cognizance as a human factor in military cyber defence education. IFAC-PapersOnLine, 52(19), 163\u2013168.","journal-title":"IFAC-PapersOnLine"},{"issue":"1\u20133","key":"4844_CR68","first-page":"72","volume":"24","author":"K Korpela","year":"2015","unstructured":"Korpela, K. (2015). Improving cyber security awareness and training programs with data analytics. Information Security Journal: A Global Perspective, 24(1\u20133), 72\u201377.","journal-title":"Information Security Journal: A Global Perspective"},{"key":"4844_CR69","doi-asserted-by":"publisher","first-page":"34","DOI":"10.1016\/j.jisa.2016.10.002","volume":"34","author":"L Kraus","year":"2017","unstructured":"Kraus, L., Wechsung, I., & M\u00f6ller, S. (2017). Psychological needs as motivators for security and privacy actions on smartphones. Journal of Information Security and Applications, 34, 34\u201345.","journal-title":"Journal of Information Security and Applications"},{"key":"4844_CR70","first-page":"411","volume":"30","author":"K Krippendorff","year":"2004","unstructured":"Krippendorff, K. (2004). Reliability in content analysis. Human Communication Research, 30, 411\u2013433.","journal-title":"Human Communication Research"},{"key":"4844_CR71","unstructured":"Krippendorff, K. (2007). Computing Krippendorff\u2019s alpha reliability. Departmental Papers (ASC), 43. http:\/\/repository.upenn.edu\/cgi\/viewcontent.cgi?article=1043&context=asc_papers. Accessed March 2, 2021."},{"key":"4844_CR72","doi-asserted-by":"crossref","unstructured":"Lee, H., Kwon, E., Yoo, K., & Chai, S. (2016). An impact of information security investment on information security incidents: A case of Korean organizations. In Proceedings of the 18th annual international conference on electronic commerce: e-commerce in smart connected world (pp. 1\u20134).","DOI":"10.1145\/2971603.2971644"},{"key":"4844_CR73","doi-asserted-by":"crossref","unstructured":"Li, L., He, W., Xu, L., Ivan, A., Anwar, M., & Yuan, X. (2014). Does explicit information security policy affect employees' cyber security behavior? A pilot study. In 2014 Enterprise systems conference (pp. 169\u2013173). IEEE.","DOI":"10.1109\/ES.2014.66"},{"key":"4844_CR74","first-page":"103","volume-title":"International conference on research and practical issues of enterprise information systems","author":"L Li","year":"2016","unstructured":"Li, L., Xu, L., He, W., Chen, Y., & Chen, H. (2016). Cyber security awareness and its impact on employee\u2019s behavior. International conference on research and practical issues of enterprise information systems (pp. 103\u2013111). Springer."},{"key":"4844_CR75","doi-asserted-by":"crossref","unstructured":"Liu, N., Nikitas, A. and Parkinson, S. (2020). Exploring expert perceptions about the cyber security and privacy of Connected and Autonomous Vehicles: A thematic analysis approach. Transportation research part F: traffic psychology and behaviour, 75, pp.66\u201386.","DOI":"10.1016\/j.trf.2020.09.019"},{"key":"4844_CR76","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1186\/s42400-020-00050-w","volume":"3","author":"RA Maalem Lahcen","year":"2020","unstructured":"Maalem Lahcen, R. A., Caulkins, B., Mohapatra, R., & Kumar, M. (2020). Review and insight on the behavioral aspects of cybersecurity. Cybersecurity, 3, 1\u201318.","journal-title":"Cybersecurity"},{"issue":"1","key":"4844_CR77","doi-asserted-by":"publisher","first-page":"118","DOI":"10.1287\/orsc.1090.0515","volume":"22","author":"JA Martin","year":"2011","unstructured":"Martin, J. A. (2011). Dynamic managerial capabilities and the multibusiness team: The role of episodic teams in executive leadership groups. Organization Science, 22(1), 118\u2013140.","journal-title":"Organization Science"},{"key":"4844_CR78","doi-asserted-by":"publisher","first-page":"27","DOI":"10.1016\/j.indmarman.2018.07.008","volume":"74","author":"JA Martin","year":"2018","unstructured":"Martin, J. A., & Bachrach, D. G. (2018). A relational perspective of the microfoundations of dynamic managerial capabilities and transactive memory systems. Industrial Marketing Management, 74, 27\u201338.","journal-title":"Industrial Marketing Management"},{"key":"4844_CR79","doi-asserted-by":"publisher","DOI":"10.3127\/ajis.v21i0.1697","author":"A McCormac","year":"2017","unstructured":"McCormac, A., Calic, D., Butavicius, M., Parsons, K., Zwaans, T., & Pattinson, M. (2017). A reliable measure of information security awareness and the identification of bias in responses. Australasian Journal of Information Systems. https:\/\/doi.org\/10.3127\/ajis.v21i0.1697","journal-title":"Australasian Journal of Information Systems"},{"key":"4844_CR80","unstructured":"Michael, K. (2008). Social and organizational aspects of information security management, IADIS e-Society, 9-12 April, Algarve, Portugal (pp. 1\u20138)."},{"key":"4844_CR81","doi-asserted-by":"crossref","unstructured":"Morgan, N.A. (2012). Marketing and business performance.  Journal of the academy of marketing science, 40(1), pp. 102\u2013119.","DOI":"10.1007\/s11747-011-0279-9"},{"key":"4844_CR82","unstructured":"Morgan, S. (2020). Cybercrime to Cost the World $10.5 Trillion Annually by 2025. Retrieved October 17, 2021 from https:\/\/cybersecurityventures.com\/hackerpocalypse-cybercrime-report-2016\/"},{"key":"4844_CR83","doi-asserted-by":"crossref","unstructured":"Mutemwa, M., Mtsweni, J., & Zimba, L. (2018). Integrating a security operations centre with an organization\u2019s existing procedures, policies and information technology systems. In 2018 International conference on intelligent and innovative computing applications (ICONIC) (pp. 1\u20136). IEEE.","DOI":"10.1109\/ICONIC.2018.8601251"},{"key":"4844_CR84","doi-asserted-by":"publisher","DOI":"10.1016\/j.techsoc.2019.03.005","volume":"58","author":"T Nam","year":"2019","unstructured":"Nam, T. (2019). Understanding the gap between perceived threats to and preparedness for cybersecurity. Technology in Society, 58, 101122.","journal-title":"Technology in Society"},{"issue":"1","key":"4844_CR85","doi-asserted-by":"publisher","first-page":"123","DOI":"10.1016\/j.im.2014.10.009","volume":"52","author":"DL Nazareth","year":"2015","unstructured":"Nazareth, D. L., & Choi, J. (2015). A system dynamics model for information security management. Information & Management, 52(1), 123\u2013134.","journal-title":"Information & Management"},{"key":"4844_CR86","unstructured":"Office of Australian Information Commissioner (2021). Notifiable Data Breaches Report: January\u2013June 2021. https:\/\/www.oaic.gov.au\/privacy\/notifiable-data-breaches\/notifiable-data-breaches-statistics\/notifiable-data-breaches-report-january-june-2021"},{"key":"4844_CR87","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/s11747-017-0563-4","volume":"46","author":"RW Palmatier","year":"2018","unstructured":"Palmatier, R. W., Houston, M. B., & Hulland, J. (2018). Review articles: Purpose, process, and structure. Journal of the Academy of Marketing Science, 46, 1\u20135. https:\/\/doi.org\/10.1007\/s11747-017-0563-4","journal-title":"Journal of the Academy of Marketing Science"},{"issue":"2","key":"4844_CR88","doi-asserted-by":"publisher","first-page":"181","DOI":"10.1108\/ICS-03-2017-0017","volume":"25","author":"M Pattinson","year":"2017","unstructured":"Pattinson, M., Butavicius, M., Parsons, K., McCormac, A., & Calic, D. (2017). Managing information security awareness at an Australian bank: A comparative study. Information and Computer Security, 25(2), 181\u2013189.","journal-title":"Information and Computer Security"},{"key":"4844_CR89","unstructured":"Poepjes, R., & Lane, M. (2012). An information security awareness capability model (ISACM)."},{"key":"4844_CR90","unstructured":"Poepjes, R. (2015). The development and evaluation of an information security awareness capability model: linking ISO\/IEC 27002 controls with awareness importance, capability and risk. Doctoral dissertation, University of Southern Queensland."},{"key":"4844_CR91","unstructured":"Proofpoint (2021). Proofpoint\u2019s State of the Phish Report reveals remote workers in Australia are currently undertrained to deal with cyber threats. Accessed on 4th October 2021. https:\/\/www.proofpoint.com\/au\/newsroom\/press-releases\/proofpoints-state-phish-report-reveals-remote-workers-australia-are"},{"issue":"4","key":"4844_CR92","doi-asserted-by":"publisher","first-page":"685","DOI":"10.1287\/orsc.1090.0428","volume":"20","author":"S Raisch","year":"2009","unstructured":"Raisch, S., Birkinshaw, J., Probst, G., & Tushman, M. L. (2009). Organizational ambidexterity: Balancing exploitation and exploration for sustained performance. Organization Science, 20(4), 685\u2013695.","journal-title":"Organization Science"},{"key":"4844_CR93","unstructured":"Rawat, D. B., Doku, R. & Garuba, M. (2019). Cybersecurity in big data era: From securing big data to data-driven security. IEEE Transactions on Services Computing."},{"issue":"4","key":"4844_CR94","doi-asserted-by":"publisher","first-page":"627","DOI":"10.1108\/ICS-03-2019-0039","volume":"28","author":"A Rabii","year":"2020","unstructured":"Rabii, A., Assoul, S., Ouazzani Touhami, K., & Roudies, O. (2020). Information and cyber security maturity models: A systematic literature review. Information and Computer Security, 28(4), 627\u2013644. https:\/\/doi.org\/10.1108\/ICS-03-2019-0039","journal-title":"Information and Computer Security"},{"issue":"2","key":"4844_CR95","first-page":"12","volume":"59","author":"RA Rothrock","year":"2018","unstructured":"Rothrock, R. A., Kaplan, J., & Van Der Oord, F. (2018). The board\u2019s role in managing cybersecurity risks. MIT Sloan Management Review, 59(2), 12\u201315.","journal-title":"MIT Sloan Management Review"},{"key":"4844_CR96","doi-asserted-by":"publisher","first-page":"442","DOI":"10.1016\/j.chb.2015.12.037","volume":"57","author":"NS Safa","year":"2016","unstructured":"Safa, N. S., & Von Solms, R. (2016). An information security knowledge sharing model in organizations. Computers in Human Behavior, 57, 442\u2013451.","journal-title":"Computers in Human Behavior"},{"key":"4844_CR97","unstructured":"Salvato, C. & Vassolo, R. (2017). The sources of dynamism in dynamic capabilities. Strategic Management Journal. Special issue article, 1\u201325."},{"issue":"1","key":"4844_CR98","doi-asserted-by":"publisher","first-page":"15","DOI":"10.1177\/0008125618790246","volume":"61","author":"PJ Schoemaker","year":"2018","unstructured":"Schoemaker, P. J., Heaton, S., & Teece, D. (2018). Innovation, dynamic capabilities, and leadership. California Management Review, 61(1), 15\u201342.","journal-title":"California Management Review"},{"key":"4844_CR99","unstructured":"Scholl, M., Leiner, K., & Fuhrmann, F. (2017). Blind spot: Do you know the effectiveness of your information security awareness-raising program?. In Proceedings of the 21st world multi-conference on systemics, cybernetics and informatics WMSCI (2017) (pp. 361\u2013366)."},{"key":"4844_CR100","unstructured":"Schneider, B., Asprion, P. M., Androvicsova, S., & Azan, W. (2020). A Practical Guideline for Developing a Managerial Information Security Awareness Program, AMCIS 2020 Proceedings, 18. https:\/\/aisel.aisnet.org\/amcis2020\/info_security_privacy\/info_security_privacy\/18"},{"issue":"2","key":"4844_CR101","doi-asserted-by":"publisher","first-page":"24","DOI":"10.1145\/503345.503348","volume":"31","author":"MT Siponen","year":"2001","unstructured":"Siponen, M. T. (2001a). Five dimensions of information security awareness. SIGCAS Computers & Society, 31(2), 24\u201329.","journal-title":"SIGCAS Computers & Society"},{"issue":"2","key":"4844_CR102","doi-asserted-by":"publisher","first-page":"24","DOI":"10.1145\/503345.503348","volume":"31","author":"MT Siponen","year":"2001","unstructured":"Siponen, M. T. (2001b). Five microfoundations of information security awareness. SIGCAS Computers & Society, 31(2), 24\u201329.","journal-title":"SIGCAS Computers & Society"},{"issue":"2","key":"4844_CR103","doi-asserted-by":"publisher","first-page":"64","DOI":"10.1109\/MC.2010.35","volume":"43","author":"M Siponen","year":"2010","unstructured":"Siponen, M., Pahnila, S., & Mahmood, M. A. (2010). Compliance with information security policies: An empirical investigation. Computer, 43(2), 64\u201371.","journal-title":"Computer"},{"issue":"2","key":"4844_CR104","doi-asserted-by":"publisher","first-page":"217","DOI":"10.1016\/j.im.2013.08.006","volume":"51","author":"M Siponen","year":"2014","unstructured":"Siponen, M., Mahmood, M. A., & Pahnila, S. (2014). Employees\u2019 adherence to information security policies: An exploratory field study. Information & Management, 51(2), 217\u2013224.","journal-title":"Information & Management"},{"issue":"13","key":"4844_CR105","doi-asserted-by":"publisher","first-page":"1375","DOI":"10.1002\/smj.791","volume":"30","author":"DG Sirmon","year":"2009","unstructured":"Sirmon, D. G., & Hitt, M. A. (2009). Contingencies within dynamic managerial capabilities: Interdependent effects of resource investment and deployment on firm performance. Strategic Management Journal, 30(13), 1375\u20131394.","journal-title":"Strategic Management Journal"},{"issue":"5","key":"4844_CR106","doi-asserted-by":"publisher","first-page":"522","DOI":"10.1287\/orsc.1050.0134","volume":"16","author":"WK Smith","year":"2005","unstructured":"Smith, W. K., & Tushman, M. L. (2005). Managing strategic contradictions: A top management model for managing innovation streams. Organization Science, 16(5), 522\u2013536.","journal-title":"Organization Science"},{"key":"4844_CR107","doi-asserted-by":"publisher","first-page":"333","DOI":"10.1016\/j.jbusres.2019.07.039","volume":"104","author":"H Snyder","year":"2019","unstructured":"Snyder, H. (2019). Literature review as a research methodology: An overview and guidelines. Journal of Business Research, 104, 333\u2013339.","journal-title":"Journal of Business Research"},{"key":"4844_CR108","unstructured":"Sobers, R. (2021). 98 Must-know data breach statistics for 2021, Varonics, Accessed on 5th October 2021, https:\/\/www.varonis.com\/blog\/data-breach-statistics\/"},{"issue":"2","key":"4844_CR109","doi-asserted-by":"publisher","first-page":"147","DOI":"10.1016\/j.dcan.2019.01.005","volume":"6","author":"PJ Taylor","year":"2020","unstructured":"Taylor, P. J., Dargahi, T., Dehghantanha, A., Parizi, R. M., & Choo, K. K. R. (2020). A systematic literature review of blockchain cyber security. Digital Communications and Networks, 6(2), 147\u2013156.","journal-title":"Digital Communications and Networks"},{"issue":"7","key":"4844_CR110","doi-asserted-by":"publisher","first-page":"509","DOI":"10.1002\/(SICI)1097-0266(199708)18:7<509::AID-SMJ882>3.0.CO;2-Z","volume":"18","author":"DJ Teece","year":"1997","unstructured":"Teece, D. J., Pisano, G., & Shuen, A. (1997). Dynamic capabilities and strategic management. Strategic Management Journal, 18(7), 509\u2013533.","journal-title":"Strategic Management Journal"},{"key":"4844_CR111","doi-asserted-by":"crossref","unstructured":"Teece, D.J. (2007). Explicating dynamic capabilities: the nature and microfoundations of (sustainable) enterprise performance. Strategic management journal, 28(13), pp. 1319\u20131350. 4\u201311.","DOI":"10.1002\/smj.640"},{"key":"4844_CR112","volume-title":"Dynamic capabilities and strategic management: Organizing for innovation and growth: Organizing for innovation and growth","author":"DJ Teece","year":"2009","unstructured":"Teece, D. J. (2009). Dynamic capabilities and strategic management: Organizing for innovation and growth: Organizing for innovation and growth. Oxford University Press."},{"key":"4844_CR113","doi-asserted-by":"publisher","first-page":"207","DOI":"10.1111\/1467-8551.00375","volume":"14","author":"D Tranfield","year":"2003","unstructured":"Tranfield, D., Denyer, D., & Smart, P. (2003). Towards a methodology for developing evidence-informed management knowledge by means of systematic review. British Journal of Management, 14, 207\u2013222. https:\/\/doi.org\/10.1111\/1467-8551.00375","journal-title":"British Journal of Management"},{"key":"4844_CR114","doi-asserted-by":"crossref","unstructured":"Thuraisingham, B. (2019). Cyber security and data governance roles and responsibilities at the C-level and the board. In 2019 IEEE international conference on intelligence and security informatics (ISI) (pp. 231\u2013236). IEEE","DOI":"10.1109\/ISI.2019.8823534"},{"key":"4844_CR115","doi-asserted-by":"publisher","first-page":"224","DOI":"10.1016\/j.indmarman.2019.04.003","volume":"83","author":"PR Trim","year":"2019","unstructured":"Trim, P. R., & Lee, Y. I. (2019). The role of B2B marketers in increasing cyber security awareness and influencing behavioral change. Industrial Marketing Management, 83, 224\u2013238.","journal-title":"Industrial Marketing Management"},{"issue":"6","key":"4844_CR116","doi-asserted-by":"publisher","DOI":"10.1016\/j.heliyon.2019.e02010","volume":"5","author":"KF Tschakert","year":"2019","unstructured":"Tschakert, K. F., & Ngamsuriyaroj, S. (2019). Effectiveness of and user preferences for security awareness training methodologies. Heliyon, 5(6), e02010.","journal-title":"Heliyon"},{"issue":"12","key":"4844_CR117","doi-asserted-by":"publisher","DOI":"10.1016\/j.heliyon.2019.e02855","volume":"5","author":"IM Venter","year":"2019","unstructured":"Venter, I. M., Blignaut, R. J., Renaud, K., & Venter, M. A. (2019). Cyber security education is as essential as \u201cthe three R\u2019s.\u201d Heliyon, 5(12), e02855.","journal-title":"Heliyon"},{"key":"4844_CR118","doi-asserted-by":"publisher","first-page":"29","DOI":"10.1016\/j.ijhcs.2018.11.003","volume":"123","author":"R van Bavel","year":"2019","unstructured":"van Bavel, R., Rodr\u00edguez-Priego, N., Vila, J., & Briggs, P. (2019). Using protection motivation theory in the design of nudges to improve online security behavior. International Journal of Human-Computer Studies, 123, 29\u201339.","journal-title":"International Journal of Human-Computer Studies"},{"key":"4844_CR119","doi-asserted-by":"crossref","unstructured":"Wahyudiwan, D. D. H., Sucahyo, Y. G. & Gandhi, A. (2017). Information security awareness level measurement for employee: Case study at ministry of research, technology, and higher education. In 2017 3rd international conference on science in information technology (ICSITech) (pp. 654\u2013658). IEEE.","DOI":"10.1109\/ICSITech.2017.8257194"},{"issue":"1","key":"4844_CR120","doi-asserted-by":"publisher","first-page":"149","DOI":"10.1108\/JOEPP-02-2020-0028","volume":"8","author":"S Widianto","year":"2021","unstructured":"Widianto, S., Lestari, Y. D., Adna, B. E., Sukoco, B. M., & Nasih, M. (2021). Dynamic managerial capabilities, organizational capacity for change and organizational performance: The moderating effect of attitude towards change in a public service organization. Journal of Organizational Effectiveness: People and Performance, 8(1), 149\u2013172. https:\/\/doi.org\/10.1108\/JOEPP-02-2020-0028","journal-title":"Journal of Organizational Effectiveness: People and Performance"},{"key":"4844_CR121","first-page":"305","volume":"8","author":"PA Williams","year":"2015","unstructured":"Williams, P. A., & Woodward, A. J. (2015). Cybersecurity vulnerabilities in medical devices: A complex environment and multifaceted problem. Medical Devices (auckland, NZ), 8, 305.","journal-title":"Medical Devices (auckland, NZ)"},{"issue":"1","key":"4844_CR122","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/s41688-019-0034-9","volume":"3","author":"L Yang","year":"2019","unstructured":"Yang, L., Li, J., Elisa, N., Prickett, T., & Chao, F. (2019). Towards big data governance in cybersecurity. Data-Enabled Discovery and Applications, 3(1), 1\u201312.","journal-title":"Data-Enabled Discovery and Applications"},{"key":"4844_CR123","unstructured":"Yew, S., Gan, T., Leong, K., Houw, T. & Lim, D.(2015). Cybersecurity: The changing role of audit committee and internal audit. Retreived October 17, 2021 from https:\/\/www2.deloitte.com\/content\/dam\/Deloitte\/sg\/Documents\/risk\/sea-risk-cyber-security-changing-role-in-audit-noexp.pdf"},{"issue":"10","key":"4844_CR124","first-page":"4995","volume":"12","author":"Y You","year":"2018","unstructured":"You, Y., Oh, J., Kim, S., & Lee, K. (2018). Advanced approach to information security management system utilizing maturity models in critical infrastructure. KSII Transactions on Internet and Information Systems, 12(10), 4995\u20135014.","journal-title":"KSII Transactions on Internet and Information Systems"},{"key":"4844_CR125","doi-asserted-by":"crossref","unstructured":"Zhang, Z. J., He, W., Li, W., & Abdous, M. H. (2021). Cybersecurity awareness training programs: A cost-benefit analysis framework. Industrial Management & Data Systems. 2021 Jan 29.","DOI":"10.1108\/IMDS-08-2020-0462"},{"key":"4844_CR126","doi-asserted-by":"publisher","first-page":"1066","DOI":"10.3389\/fpsyg.2020.01066","volume":"11","author":"G Zhou","year":"2020","unstructured":"Zhou, G., Gou, M., Gan, Y., & Schwarzer, R. (2020a). Risk awareness, self-efficacy, and social support predict secure smartphone usage. Frontiers in Psychology, 11, 1066.","journal-title":"Frontiers in Psychology"},{"issue":"3","key":"4844_CR127","doi-asserted-by":"publisher","first-page":"339","DOI":"10.1287\/orsc.13.3.339.2780","volume":"3","author":"M Zollo","year":"2002","unstructured":"Zollo, M., & Winter, S. G. (2002). Deliberate learning and the evolution of dynamic capabilities. Organization Science, 3(3), 339\u2013351.","journal-title":"Organization Science"},{"key":"4844_CR128","doi-asserted-by":"crossref","unstructured":"Zwilling, M., Klien, G., Lesjak, D., Wiechetek, \u0141., Cetin, F., & Basim, H. N. (2020). Cyber security awareness, knowledge and behavior: A comparative study. Journal of Computer Information Systems, 1\u201316.","DOI":"10.1080\/08874417.2020.1712269"}],"container-title":["Annals of Operations Research"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10479-022-04844-8.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10479-022-04844-8\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10479-022-04844-8.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,5]],"date-time":"2025-09-05T19:27:49Z","timestamp":1757100469000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10479-022-04844-8"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,8,2]]},"references-count":128,"journal-issue":{"issue":"2","published-print":{"date-parts":[[2025,7]]}},"alternative-id":["4844"],"URL":"https:\/\/doi.org\/10.1007\/s10479-022-04844-8","relation":{},"ISSN":["0254-5330","1572-9338"],"issn-type":[{"value":"0254-5330","type":"print"},{"value":"1572-9338","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022,8,2]]},"assertion":[{"value":"16 June 2022","order":1,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"2 August 2022","order":2,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}