THE CURRENT STATE OF ACCOUNTING INFORMATION SECURITY CULTURE IN GARMENT ENTERPRISES IN THANH HOA PROVINCE
Main Article Content
Abstract
THE CURRENT STATE This study emphasizes the crucial role and assesses the current state of information security culture (ISC) in safeguarding accounting information within garment enterprises in Thanh Hóa province. In the digitalization era, businesses face numerous cybersecurity risks, yet awareness and security practices remain limited. The research employs both qualitative and quantitative methods, with a survey sample of 326 managers and accounting staff from 287 garment enterprises in Thanh Hóa. The findings highlight the strengths and limitations of information security culture through four key factors: awareness, behavior, leadership commitment, and training. Based on these insights, the study proposes recommendations to build, maintain, and enhance the information security culture in accounting within these enterprises.
Keywords
Information security culture, garment enterprises, Thanh Hóa.
Article Details
References
[2] Lê Quốc Cường (2022), Tác động của chuyển đổi số đến bảo mật dữ liệu kế toán trong doanh nghiệp, Kỷ yếu Hội thảo khoa học Quốc gia.
[3] Phạm Quang Dũng (2022), Ảnh hưởng của nhận thức nhân viên đến an toàn thông tin trong hệ thống kế toán, Nxb. Tài chính, Hà Nội.
[4] Nguyễn Văn Ngọc (2018), Văn hóa an toàn thông tin trong doanh nghiệp và tổ chức kế toán, Tạp chí Khoa học Kinh tế, 12(4):45-57.
[5] Trần Thị Minh Hằng, Lê Văn Hưng (2021), Nhận diện các yếu tố ảnh hưởng đến văn hóa an toàn thông tin kế toán trong các doanh nghiệp Việt Nam, Tạp chí Kế toán & Kiểm toán, 2021(6):24-33.
[6] Vũ Hồng Sơn (2023), Ứng dụng mô hình quản trị rủi ro trong đảm bảo an toàn thông tin kế toán tại Việt Nam, Tạp chí Tài chính, 2023(3):12-19.
[7] Thủ tướng Chính phủ (2023), Quyết định số 153/QĐ-TTg phê duyệt Quy hoạch tỉnh Thanh Hóa thời kỳ 2021-2030, tầm nhìn đến năm 2045.
[8] Al-Okaily, A., Al-Okaily, M., Shiyyab, F. (2020), Accounting information system effectiveness from an organizational perspective.
[9] Al-Okaily, M., Al-Okaily, F., & Shiyyab, H. (2020), The effectiveness of accounting information systems in decision making, Journal of Applied Accounting Research, 21(2):112-124.
[10] Anderson, R., Boehme, R., & Wright, P. (2012), Security Engineering: A Guide to Building Dependable Distributed Systems, Wiley.
[11] Choi, B., Kwon, O., & Lee, H. (2016), Determinants of Information Security Culture. Computers & Security, (58):1-10.
[12] Gorla, N., Somers, T. M., Wong, B. (2010), Organizational impact of system quality, information quality, and service quality, The Journal of Strategic Information Systems, 19(3):207-228.
[13] Gupta, R., & Patel, S. (2021), Enhancing Cybersecurity Culture in Accounting Firms: A Framework for Risk Mitigation, Cybersecurity & Finance Review.
[14] Hovav, A., & D'Arcy, J. (2012), Security Policy Compliance: A Study of the Role of Employees in Organizational Security, Computers & Security, 31(4):491-502.
[15] Hovav, A., D'Arcy, J. (2012), The Impact of User Security Awareness on Information Security Policy Compliance, Information Systems Research, 23(1):161-176.
[16] Jaeger, P., Larkin, S., Lanza, G. (2007), Organizational Culture and Information Security: The Role of Leadership, Information Management & Computer Security, 15(4):291-302.
[17] Kando, R., et al. (2021), Behavioral and Attitudinal Shifts in Information Security Awareness, International Journal of Information Security, 18(2):78-95.
[18] Kritzinger, E., von Solms, B. (2016), Information Security Culture - A Management Perspective, Information Management & Computer Security, 23(3):324-341.
[19] Lichtenstein, S., & Williamson, K. (2014), Cybersecurity and Information Assurance: Understanding Security Risks in Information Systems, Springer.
[20] Pfleeger, C., & Pfleeger, S. (2016), Security in Computing, Pearson Education.
[21] Siponen, M., & Vance, A. (2010), Neutralizing the Insider Threat: A Multi-Faceted Approach. Information Systems Journal, 20(5):381-413.
[22] Smith, J., & Brown, K. (2020), The Human Factor in Cybersecurity: Behavioral Risks in Accounting and Finance, Journal of Information Security.
[23] Uchendu, C., et al. (2021), Corporate Information Security Culture: A Critical Review, Journal of Cyber Security Studies, 15(3):45-60.
[24] Zakaria, O., et al. (2007), Internal Information System Incidents and Organizational Security Awareness, Information Management & Computer Security, 12(4):289-302.