{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,1]],"date-time":"2026-04-01T19:20:16Z","timestamp":1775071216552,"version":"3.50.1"},"reference-count":48,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2016,12]]},"DOI":"10.1109\/icitst.2016.7856729","type":"proceedings-article","created":{"date-parts":[[2017,2,16]],"date-time":"2017-02-16T17:16:34Z","timestamp":1487265394000},"page":"352-358","source":"Crossref","is-referenced-by-count":34,"title":["Information security policies: A review of challenges and influencing factors"],"prefix":"10.1109","author":[{"given":"Mutlaq","family":"Alotaibi","sequence":"first","affiliation":[]},{"given":"Steven","family":"Furnell","sequence":"additional","affiliation":[]},{"given":"Nathan","family":"Clarke","sequence":"additional","affiliation":[]}],"member":"263","reference":[{"key":"ref39","article-title":"Power to the people? Managing technology democracy in the workplace","year":"2009","journal-title":"EU"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1016\/j.istr.2010.04.004"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1145\/274644.274677"},{"key":"ref32","first-page":"193","article-title":"Use of Persuasive technology to change end user's IT security aware behavior: a pilot study","volume":"2","author":"yeo","year":"2008","journal-title":"World Academy of Science Engineering and Technology"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1287\/isre.1070.0160"},{"key":"ref30","first-page":"1","article-title":"Assessing the Impact of Security Culture and the Employee-Organization Relationship on IS Security Compliance","author":"greene","year":"2010","journal-title":"5th Annual Symposium on Information Assurance"},{"key":"ref37","first-page":"1","article-title":"Personality and IT security: An application of the five-factor model","author":"shropshire","year":"2006","journal-title":"Amer Conf Inform Syst"},{"key":"ref36","article-title":"Exploring the Role of Individual Employee Characteristics and Personality on Employee Compliance with Cybersecurity Policies 1","author":"mcbride","year":"2012"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1016\/j.ijhcs.2011.07.007"},{"key":"ref34","author":"proctor","year":"2006","journal-title":"Sensation and Perception"},{"key":"ref10","article-title":"The new users' guide: How to raise information security awareness","year":"2010","journal-title":"ENISA European Network and Information Security Agency"},{"key":"ref40","article-title":"Security trends for 2009","author":"mohamed","year":"0"},{"key":"ref11","first-page":"180","article-title":"Security Awareness in an Organization","volume":"10","author":"qudaih","year":"2014","journal-title":"Persuas Technol Contrib Towar Enhanc Inf Secur Aware an Organ"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1016\/S1361-3723(09)70019-3"},{"key":"ref13","first-page":"47","article-title":"Information security culture: A behaviour compliance conceptual framework","volume":"105","author":"alfawaz","year":"2010","journal-title":"Conferences in Research and Practice in Information Technology Series"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/HICSS.2014.256"},{"key":"ref15","first-page":"10862","article-title":"Effectiveness of information security awareness methods based on psychological theories","volume":"5","author":"khan","year":"2011","journal-title":"African Journal of Business Management"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1016\/S1361-3723(06)70419-5"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1016\/j.istr.2010.04.004"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.21236\/ADA585500"},{"key":"ref19","article-title":"Bridging the Data Security Chasm","year":"2014","journal-title":"Global consulting firm Protiviti"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2013.09.009"},{"key":"ref4","article-title":"2015 INFORMATION SECURITY","year":"2015","journal-title":"PriceWaterhouseCooper PwC"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1016\/S1361-3723(12)70122-7"},{"key":"ref3","article-title":"SO \/ I BSI Standards Publication nformati on technol ogy-Securi ty techni ques-nformati on securi ty management systems-Requi rements","year":"2013","journal-title":"ISO"},{"key":"ref6","article-title":"INFORMATION SECURITY BREACHES SURVEY 2014","year":"2014","journal-title":"PriceWaterhouseCooper PwC"},{"key":"ref29","first-page":"757","article-title":"R ESEARCH A RTICLE I MPROVING E MPLOYEES &#x2018; C OMPLIANCE T HROUGH I NFORMATION S YSTEMS S ECURITY T RAINING","volume":"34","author":"puhakainen","year":"2010"},{"key":"ref5","article-title":"Get ahead of cybercrime EY, s Global Information","year":"2014","journal-title":"2014 EY Global information"},{"key":"ref8","article-title":"Power to the people? Managing technology democracy in the workplace","year":"2009","journal-title":"Economist Intelligence Unit"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.5120\/9729-4202"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2009.07.001"},{"key":"ref9","article-title":"More Than Half of Enterprise Employees Receive No Security Training: Survey Finds","author":"prince","year":"0","journal-title":"security week 2014"},{"key":"ref1","article-title":"Information Security Policy Templates","year":"0","journal-title":"SANSO"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2012.09.010"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/2738210.2738216"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1057\/ejis.2009.6"},{"key":"ref48","article-title":"Insider Threats Study: Illicit Cyber activity in the Information Technology and Telecommunication Secror","author":"kowaski","year":"2008","journal-title":"Mellon Universit"},{"key":"ref22","article-title":"A framework and assessment instrument for information security culture","author":"da veiga","year":"2009","journal-title":"Computers &amp Security"},{"key":"ref47","first-page":"2402","article-title":"Insider threat behavior factors: A comparison of theory with reported incidents","author":"munshi","year":"2011","journal-title":"Proceedings of the Annual Hawaii International Conference on System Sciences"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.14722\/usec.2014.23007"},{"key":"ref42","first-page":"1","article-title":"Common sense guide to prevention and detection of insider threats 3rd edition-version 3.1","year":"2009","journal-title":"Published by CERT"},{"key":"ref24","first-page":"1","article-title":"Employees &#x2018; Behavior towar ds IS Secur ity Policy Compliance University of Oulu, Department of Information Processing","author":"pahnila","year":"2007"},{"key":"ref41","article-title":"An Analysis of Technical Observations in Insider Theft of Intellectual Property Cases","author":"hanley","year":"2011"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2009.04.006"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1287\/isre.1090.0266"},{"key":"ref26","first-page":"45","article-title":"Human Factors and Information Security: Individual, Culture and Security Environment","author":"parsons","year":"2010","journal-title":"Science and Technology"},{"key":"ref43","article-title":"Common sense guide to prevention and detection of insider threats 3rd edition-version 3.1","author":"cappelli","year":"2009"},{"key":"ref25","doi-asserted-by":"crossref","first-page":"523","DOI":"10.2307\/25750690","article-title":"Information Security Policy Compliance: An Empiracal Study of Rationality-Based Beliefs and Information Security Awareness","volume":"34","author":"bulgurcu","year":"2010","journal-title":"MIS Q"}],"event":{"name":"2016 11th International Conference for Internet Technology and Secured Transactions (ICITST)","location":"Barcelona, Spain","start":{"date-parts":[[2016,12,5]]},"end":{"date-parts":[[2016,12,7]]}},"container-title":["2016 11th International Conference for Internet Technology and Secured Transactions (ICITST)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/7847254\/7856645\/07856729.pdf?arnumber=7856729","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,9,18]],"date-time":"2019-09-18T15:53:10Z","timestamp":1568821990000},"score":1,"resource":{"primary":{"URL":"http:\/\/ieeexplore.ieee.org\/document\/7856729\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2016,12]]},"references-count":48,"URL":"https:\/\/doi.org\/10.1109\/icitst.2016.7856729","relation":{},"subject":[],"published":{"date-parts":[[2016,12]]}}}