IT Security Risk Management in the Context of Cloud Computing (eBook)

Towards an Understanding of the Key Role of Providers’ IT Security Risk Perceptions

(Autor)

eBook Download: PDF
2015 | 1st ed. 2015
XXII, 167 Seiten
Springer Fachmedien Wiesbaden GmbH (Verlag)
978-3-658-11340-7 (ISBN)

Lese- und Medienproben

IT Security Risk Management in the Context of Cloud Computing - André Loske
Systemvoraussetzungen
53,49 inkl. MwSt
  • Download sofort lieferbar
  • Zahlungsarten anzeigen

This work adds a new perspective to the stream of organizational IT security risk management literature, one that sheds light on the importance of IT security risk perceptions. Based on a large-scale empirical study of Cloud providers located in North America, the study reveals that in many cases, the providers' decision makers significantly underestimate their services' IT security risk exposure, which inhibits the implementation of necessary safeguarding measures. The work also demonstrates that even though the prevalence of IT security risk concerns in Cloud adoption is widely recognized, providers only pay very limited attention to the concerns expressed by customers, which not only causes serious disagreements with the customers but also considerably inhibits the adoption of the services.



Dr. André Loske received his doctorate at the chair of Information Systems | Software Business & Information Management at the Technische Universität Darmstadt, Germany. His main research interests are organizational IT risk management and the perception of IT security risks.

Dr. André Loske received his doctorate at the chair of Information Systems | Software Business & Information Management at the Technische Universität Darmstadt, Germany. His main research interests are organizational IT risk management and the perception of IT security risks.

Foreword 5
Acknowledgements 7
Table of Contents 8
List of Tables 11
List of Figures 12
List of Abbreviations 13
Abstract 15
Zusammenfassung 17
1 Introduction 19
1.1 Problem Description and Motivation 19
1.2 Objectives and Benefits 23
1.3 Structure of the Thesis 27
2 Foundations 32
2.1 Cloud Computing 32
2.1.1 Essential Characteristics 33
2.1.2 Delivery Models 34
2.1.3 Deployment Models 35
2.2 IT Security Risk Perception 37
2.2.1 The Nature of Perceived Risks 38
2.2.2 Perceived IT Security Risks in the Context of the Cloud 40
2.3 Organizational IT Security Risk Management 43
2.3.1 Phase I: Identification of IT Security Threat 44
2.3.2 Phase II: IT Security Risk Analysis 45
2.3.3 Phase III: Solution Analysis 47
2.3.4 Phase IV: Decision 48
2.3.5 Phase V: Implementation 50
3 Part I: The Inhibiting Role of Unrealistic Optimism in Providers’ IT Security Risk Management 51
3.1 Theoretical Background and Hypotheses Development 51
3.1.1 Organizational IT Security Risk Management 52
3.1.2 Technology Threat Avoidance Theory 53
3.1.3 Institutional Theory 62
3.1.4 Decision Makers’ IT Security Risk Perceptions 66
3.1.5 Unrealistic Optimism in Decision Makers’ IT Security Risk Perceptions 71
3.2 Research Methodology 75
3.2.1 Measurement Model 75
3.2.2 Survey Administration 83
3.2.3 Sample Characteristics 83
3.2.4 Data Analyses 85
3.3 Results 87
3.3.1 Impacts of Decision Makers’ IT Security Risk Perceptions on Providers’ IT Security Risk Management 87
3.3.2 Existence of Unrealistic Optimism in the IT Security Risk Perceptions of Providers’ Decision Makers 95
3.4 Discussion of Study Findings 104
4 Part II: Perceptual Incongruences regarding the IT Security Risks as a Barrier to Cloud Adoption 109
4.1 Theoretical Background and Hypotheses Development 109
4.1.1 Perceptual Congruence 109
4.1.2 Perceptual Incongruences regarding the IT Security Risks 111
4.1.3 Cognitive Dissonance Theory 113
4.1.4 Expectation Confirmation Theory 115
4.1.5 Cloud Adoption 116
4.2 Research Methodology 119
4.2.1 Measurement Model 119
4.2.2 Survey Administration 120
4.2.3 Sample Characteristics 121
4.2.4 Data Analyses 123
4.3 Results 125
4.3.1 Existence of Perceptual Incongruences between Providers and Customers regarding the IT Security Risks 125
4.3.2 Impacts of Perceptual Incongruences between Providers and Customers regarding the IT Security Risks on Cloud Adoption 127
4.4 Discussion of Study Findings 132
5 Conclusion and Summary of Key Findings 135
5.1 Implications for Theory and Research 135
5.2 Implications for Practice 139
5.2.1 Implications and Recommended Actions for Providers 139
5.2.2 Implications and Recommended Actions for (Potential) Customers 142
5.3 Limitations and Future Research Directions 143
5.4 Résumé 146
Appendix 148
A.1 Supporting Material for Part I (Chapter 3) 148
A.1.1 Measurement Items 148
A.1.2 Validity Analysis 153
A.1.3 Consistency Analysis of the Absolute Unrealistic Optimism Classifier 154
A.1.4 Multi-Group Analysis of the Structural Model 155
A.2 Supporting Material for Part II (Chapter 4) 156
A.2.1 Measurement Items 156
A.2.2 Validity Analysis 157
A.2.3 Formation of IT Security Risk Perceptions in the Context of the Cloud 158
References 159

Erscheint lt. Verlag 30.10.2015
Zusatzinfo XXII, 167 p. 11 illus.
Verlagsort Wiesbaden
Sprache englisch
Themenwelt Mathematik / Informatik Informatik Netzwerke
Schlagworte Cloud Computing • IT Security Risk Management • IT Security Risk Perception • Perceptual Incongruences • Recommended Actions for Providers and Users
ISBN-10 3-658-11340-5 / 3658113405
ISBN-13 978-3-658-11340-7 / 9783658113407
Haben Sie eine Frage zum Produkt?
PDFPDF (Wasserzeichen)
Größe: 1,3 MB

DRM: Digitales Wasserzeichen
Dieses eBook enthält ein digitales Wasser­zeichen und ist damit für Sie persona­lisiert. Bei einer missbräuch­lichen Weiter­gabe des eBooks an Dritte ist eine Rück­ver­folgung an die Quelle möglich.

Dateiformat: PDF (Portable Document Format)
Mit einem festen Seiten­layout eignet sich die PDF besonders für Fach­bücher mit Spalten, Tabellen und Abbild­ungen. Eine PDF kann auf fast allen Geräten ange­zeigt werden, ist aber für kleine Displays (Smart­phone, eReader) nur einge­schränkt geeignet.

Systemvoraussetzungen:
PC/Mac: Mit einem PC oder Mac können Sie dieses eBook lesen. Sie benötigen dafür einen PDF-Viewer - z.B. den Adobe Reader oder Adobe Digital Editions.
eReader: Dieses eBook kann mit (fast) allen eBook-Readern gelesen werden. Mit dem amazon-Kindle ist es aber nicht kompatibel.
Smartphone/Tablet: Egal ob Apple oder Android, dieses eBook können Sie lesen. Sie benötigen dafür einen PDF-Viewer - z.B. die kostenlose Adobe Digital Editions-App.

Zusätzliches Feature: Online Lesen
Dieses eBook können Sie zusätzlich zum Download auch online im Webbrowser lesen.

Buying eBooks from abroad
For tax law reasons we can sell eBooks just within Germany and Switzerland. Regrettably we cannot fulfill eBook-orders from other countries.

Mehr entdecken
aus dem Bereich
Das umfassende Handbuch

von Martin Linten; Axel Schemberg; Kai Surendorf

eBook Download (2023)
Rheinwerk Computing (Verlag)
20,93
das Praxisbuch für Administratoren und DevOps-Teams

von Michael Kofler

eBook Download (2023)
Rheinwerk Computing (Verlag)
27,93