To read this content please select one of the options below:

Information security governance implementation within Ghanaian industry sectors: An empirical study

Winfred Yaokumah (Department of Information Technology, Pentecost University College, Accra, Ghana)

Information Management & Computer Security

ISSN: 0968-5227

Article publication date: 8 July 2014

1043

Abstract

Purpose

The purpose of this study is to assess the levels of information security governance (ISG) implementation among major Ghanaian industry sectors. The intent is to benchmark inter-industry sector ISG implementation and to identify areas that may require improvement.

Design/methodology/approach

Random sampling strategy was used, and data were collected via Web survey. The data analysis utilized a one-way analysis of variance to determine the differences in means of the levels of implementation of ISG focus areas among five main industry sectors.

Findings

The results showed that, as a whole, all the industry sectors have only partially implemented ISG. In particular, there existed statistical significant differences in ISG implementation among the industry sectors. Ranking ISG implementation, Financial Institutions were close to completion, Utility Companies, Others (Information Technology, Oil and Gas, Manufacturing) and Public Services had PI ISG and health care and educational institutions were at the planning stages. The result also revealed that all the industry sectors made marginal effort trying to align information security to business strategy, and performance measurement remained the least implemented focus area.

Originality/value

Organizational leaders could use these findings to benchmark industry sectors’ ISG implementation, which could lead to competitiveness. Again, international enterprises that do businesses with these industry sectors would better understand the level of involvement of the top executives in governing information security toward the protection of valuable information assets.

Keywords

Citation

Yaokumah, W. (2014), "Information security governance implementation within Ghanaian industry sectors: An empirical study", Information Management & Computer Security, Vol. 22 No. 3, pp. 235-250. https://doi.org/10.1108/IMCS-06-2013-0044

Publisher

:

Emerald Group Publishing Limited

Copyright © 2014, Emerald Group Publishing Limited

Related articles