THE FACTORS AFFECTING INFORMATION TECHNOLOGIES RISK MANAGEMENT AT TURKEY’S STATE UNIVERSITIES
Abstract
The aim of this study is to identify factors affecting IT risk management in universities, to explore patterns among these factors and to reveal an IT risk management model. The research universe consists of 548 IT employees in Turkey’s state universities’ IT centers.
The factors effecting IT risk management success were determined based upon related literature, expert views and a theoretical model has been proposed to successful IT risk management. A quantitative research model was used and an instrument named IT Risk Management Scale (ITRM-S) was developed and used for data collection. The data analyses of this study were done by using SPSS and LISREL programs.
It is found that IT risk management process was affected by human factor, institutional, environmental and technological factors and the model for successful IT risk management have been verified. Results show that institutional, environmental and technological factors directly affect the success of IT risk management. Furthermore, it is seen that human factor affects IT risk management success through environmental factors. Results were compared with literature results and recommendations are presented to researchers and practitioners.
Keywords
Kaynakça
- Ahlan, Abd Rahman and Arshad, Yusri (2012), “Information Technology Risk Management: The Case Of The International Islamic University Malaysia”, Journal Of Research And Innovation In Information Systems, No: 1, pp. 58-67.
- Aktaş, F.Özden and Soğukpınar, İbrahim (2010), “Bilgi Güvenliğinde Uygun Risk Analizi ve Yönetimi Yönteminin Seçimi İçin Bir Yaklaşım”, TBV Bilgisayar Bilimleri ve Mühendisliği Dergisi, Vol. 3, pp. 53-62.
- Al-Awadi, Maryam and Renaud, Karen (2009), “Success factors in information security implementation in organizations”, IADIS International Conference e-Society.
- Ang, Wee Horng; Lee Yang W; Madnick Stuart E.; Mistress Dinsha and And Siegel, M. (2006, August). “House of security: Locale, roles and resources for ensuring information security”. Conference on Information Systems, Acapulco, Mexico.
- Büyüköztürk, Şener (2002), “Faktör Analizi: Temel Kavramlar ve Ölçek Geliştirmede Kullanımı”, Kuram ve Uygulamada Eğitim Yönetimi, Vol. 32, pp. 470-483.
- Chang Shuchih. E. and Ho Chienta B. (2006), “Organizational factors to the effectiveness of implementing information security management”, Industrial Management & Data Systems, Vol. 106, pp.345-61.
- Çokluk Ömer, Şekercioğlu Güçlü and Büyüköztürk Şener (2010), Sosyal bilimler için çok değişkenli istatistik SPSS ve LISREL uygulamaları (First Edition). Ankara: Pegem Publishing.
- Ekelhart, Andreas; Stefan, Fenz and Neubauer, Thomas (2009, January), “AURUM: A Framework for Information Security Risk Management” 42nd International Conference on System Sciences, Hawaii, pp.1-10.
Ayrıntılar
Birincil Dil
İngilizce
Konular
-
Bölüm
Araştırma Makalesi
Yayımlanma Tarihi
1 Haziran 2018
Gönderilme Tarihi
1 Ocak 2018
Kabul Tarihi
1 Mayıs 2018
Yayımlandığı Sayı
Yıl 2018 Cilt: 10 Sayı: 2