An Empirical Examination of the Effects of IT Leadership on Information Security Risk Management in USA Organizations

Henry Okonofua, Shawon Rahman, Reni Ivanova · EPiC series in computing · 2019

Although organizations face continuously evolving Information Security (IS) risks, the scholarly literature is unclear as to whether transformational, transactional, and passive-avoidant leadership styles influence IS risk management. The study was conducted using a quantitative, non-experimental, and descriptive research design. The sample consisted of senior IT leaders with a range of titles including Chief Information Officer (CIO), Chief Information Security Officer (CISO), Director of IT, and IT Manager. This population is characterized by extensive knowledge of IT and IS issues, and these individuals are generally responsible for directing an organization’s approach to IS risk management. Data from 250 participant surveys were analyzed using the Pearson product-moment coefficient correlation and multiple regression analysis. The results of the analysis demonstrated that both IT leadership is significantly related to IS risk management.

Read the paper · More papers on PaperTik