Bring Your Own Device Security Policy Compliance Framework
Language: English
Published by Springer, 2026
- Softcover
- New

Seller: AHA-BUCH GmbH, Einbeck, GermanyAHA-BUCH GmbH
AbeBooks seller since August 14, 2006
Condition: New
US$ 263.90
Quantity: 1 available
Add to basketItem description from seller
Druck auf Anfrage Neuware - Printed after ordering - Proliferation of Bring Your Own Device (BYOD) has instigated a widespread change, fast outpacing the security strategies deployed by organizations. The influx of these devices has created information security challenges within organizations, further exacerbated with employees inconsistent adherence with BYOD security policy. To prevent information security breaches, compliance with BYOD security policy and procedures is vital. This book aims to investigate the factors that determine employees' BYOD security policy compliance by using mixed methods approach. Security policy compliance factors, BYOD practices and security risks were identified following a systematic review approach. Building on Organizational Control Theory, Security Culture and Social Cognitive Theory, a research framework positing a set of plausible factors determining BYOD security policy compliance was developed. Next, with a purposive sample of eight information security experts from selected public sector organizations, interviews and BYOD risk assessments analysis were performed to furnish in-depth insights into BYOD risks, its impact on organizations and recommend control measures to overcome them. This led to the suggestion of four control measures to mitigate critical BYOD security risks such as Security Training and Awareness (SETA), policy, top management commitment and technical countermeasures. The control measures were mapped into the research framework to be tested in the following quantitative phase. The proposed research framework was tested using survey results from 346 employees of three Critical National Information Infrastructure (CNII) agencies. Using Partial Least Squares Structural Equation Modelling (PLS-SEM), the framework's validity and reliability were evaluated, and hypotheses were tested. Findings show that perceived mandatoriness, self-efficacy and psychological ownership are influential in predicting employees BYOD security policy compliance. Specification of security policy is associated with perceived mandatoriness, while BYOD IT support and SETA are significant towards self-efficacy. Unexpectedly, security culture has been found to have no significant relationship to BYOD security policy compliance. Theoretical, practical, and methodological contributions were discussed and suggestions for future research were recommended. The analysis led to a number of insightful findings that contribute to the literature and the management, which are predominantly centered on traditional computing. In view of the ever-increasing BYOD threats to the security of government information, it is imperative that IT managers establish and implement effective policies to protect vital information assets. Consequently, the findings of this study may benefit policymakers, particularly in the public sector, in their efforts to increase BYOD security policy compliance among employees.…
Seller Inventory # 9783031868030
- Title
- Bring Your Own Device Security Policy Compliance Framework
- Author
- Tutut Herawan
- Publisher
- Springer
- Publication year
- 2026
- Condition
- Neu
- Binding
- Taschenbuch
- Language
- English
- ISBN 10
- 303186803X
- ISBN 13
- 9783031868030
- Item weight
- 341 grams
- Dimensions
- 235x155x13 mm
Proliferation of Bring Your Own Device (BYOD) has instigated a widespread change, fast outpacing the security strategies deployed by organizations. The influx of these devices has created information security challenges within organizations, further exacerbated with employees’ inconsistent adherence with BYOD security policy. To prevent information security breaches, compliance with BYOD security policy and procedures is vital. This book aims to investigate the factors that determine employees' BYOD security policy compliance by using mixed methods approach. Security policy compliance factors, BYOD practices and security risks were identified following a systematic review approach. Building on Organizational Control Theory, Security Culture and Social Cognitive Theory, a research framework positing a set of plausible factors determining BYOD security policy compliance was developed. Next, with a purposive sample of eight information security experts from selected public sector organizations, interviews and BYOD risk assessments analysis were performed to furnish in-depth insights into BYOD risks, its impact on organizations and recommend control measures to overcome them. This led to the suggestion of four control measures to mitigate critical BYOD security risks such as Security Training and Awareness (SETA), policy, top management commitment and technical countermeasures. The control measures were mapped into the research framework to be tested in the following quantitative phase. The proposed research framework was tested using survey results from 346 employees of three Critical National Information Infrastructure (CNII) agencies. Using Partial Least Squares – Structural Equation Modelling (PLS-SEM), the framework's validity and reliability were evaluated, and hypotheses were tested. Findings show that perceived mandatoriness, self-efficacy and psychological ownership are influential in predicting employees’ BYOD security policy compliance. Specification of security policy is associated with perceived mandatoriness, while BYOD IT support and SETA are significant towards self-efficacy. Unexpectedly, security culture has been found to have no significant relationship to BYOD security policy compliance. Theoretical, practical, and methodological contributions were discussed and suggestions for future research were recommended. The analysis led to a number of insightful findings that contribute to the literature and the management, which are predominantly centered on traditional computing. In view of the ever-increasing BYOD threats to the security of government information, it is imperative that IT managers establish and implement effective policies to protect vital information assets. Consequently, the findings of this study may benefit policymakers, particularly in the public sector, in their efforts to increase BYOD security policy compliance among employees.
"Synopsis" may belong to another edition of this title.
About the Author
Rathika Palanisamy
Rathika Palanisamy holds the position of Principal Assistant Secretary in the Information Technology Division, Ministry of Finance, Malaysia. She completed her doctoral degree at the Department of Computer Systems and Technology, Faculty of Computer Science and Information Technology, University of Malaya, Malaysia in 2023. Her research contributes to understanding the complexities of BYOD implementation, emphasizing the need for comprehensive strategies that address both technical and human behavioral aspects to enhance security policy compliance in organizations. Her current research interests include Information Security Risk Management, Artificial Intelligence Security Governance and Integration of Information Security in Enterprise Architecture.
Azah Anir Norman
Azah Anir Norman is an associate professor and currently the Deputy Dean of Development, Faculty of Computer Science and Information Technology, University of Malaya (UM), Malaysia. She earned her undergraduate degree at Universiti Kebangsaan Malaysia (UKM) and her master's degree in electronic commerce security from Royal Holloway University of London in the UK in 2004. She completed her Ph.D. from the University of Malaya (UM) in 2014. She specializes in information security management systems (ISMS), secure applications for ICT, privacy and human elements in security, information security governance, security on social platforms, and e-commerce security. She is also very interested in topics pertaining to Islamic ICT (such as Halal and Quran Authentication), Design Thinking, and Teaching & Learning Innovations. Azah Norman published numerous academic papers in reputable ISI and SCOPUS publications in the fields of information security governance, information security management, information security systems, information security & trust, information security & privacy, information security education awareness, information security & assurance, and information security policy & governance. Before entering the academic world, she worked as a Consultant at MSC Trustgate.com, a subsidiary of MDEC and a partner of VeriSign Inc. in the USA. In Trustgate, she provided Internet Security implementation consultation to numerous top 500 companies. Prior to becoming the consultant at Trustgate, she worked at VeriSign Inc. in Silicon Valley, San Jose, California, in 2001. As a specialist in information security management systems, she is also part of an expert in the working group WG/G/5-1 Information Security Management System, Department of Standards, Malaysia, and the International Organisation for Standardisation (ISO). She belongs to the Association of Information Systems (AIS) and the MyAIS (AIS Malaysia Chapter), an organization that promotes excellence and knowledge progress in the field of information systems research and practice. She is also a secretary at the Cybersecurity Academia Malaysia Association (CSAM), a national association that promotes cybersecurity teaching, awareness, and research in Malaysia. She received a prestigious award from the Royal Academy of Engineering of the United Kingdom (RAENG) as the Leader of Innovation in 2018.
Miss Laiha Mat Kiah
Miss Laiha Mat Kiah received her PhD degree in Information Security from Royal Holloway, University of London, United Kingdom in 2007, and since then she has been an academic and an active researcher at the Faculty of Computer Science & Information Technology, Universiti Malaya (UM), Kuala Lumpur, Malaysia. Her fundamental discipline is Computer Science, and her area of expertise is Cyber Security (and its related topics). She was promoted to the full Professorship in 2015, and is an active member of Malaysia Board of Technologists (Ts.), Malaysian Society for Cryptology Research (MSCR), IEEE as Senior Member, and EC Council member. Her main research interest will always be in the Security aspect of Computing and Technology fields with variation of applications in multi and/or trans disciplinary projects. This is evidenced by her publications and research projects in which she is/was the principal investigator (PI) as well as co-PIs. As a professional technologist (Ts.), keeping up with the current trend and demand of ever evolving Computing Technology field is crucial to ensure the quality and the impact of her research work. Current research interests include Cyber Security, Blockchain Technology, IoT and Health Information Exchange.
Tutut Herawan
Tutut Herawan is an associate professor at the Department of Information Systems, Faculty of Computer Science and Information Technology, University of Malaya. His mathematics Erdos number is 4. He was named on the Top 2% World Scientists Ranking by Stanford University and Elsevier BV, since 2019-present. He received a PhD degree in information technology in 2010 from Universiti Tun Hussein Onn Malaysia. He has more than 17 years experience as academic staff and has supervised several Master & PhD students.
He is an associate editor of Malaysian Journal of Computer Science (ISI WoS) & Springer Nature of Computer Science. He is also an editorial member of International Journal of Knowledge and Systems Science, IGI Global (Scopus), and editor-advisory board member of the book series Information Systems Engineering and Management (ISEM) of Springer Nature. He has edited five Springer-series books (Presently editing three books of Springer Nature in Tourism Entrepreneurship and Technology) and published more than 330 articles in various book chapters, international journals, and conference proceedings (with Scopus h-index 35 and ISI h-index 28). He has actively served as a chair, co-chair, program committee member and co-organizer for numerous international conferences/workshops. His research area includes applied mathematics in computer science, data science and big data, data engineering, information systems, decision support systems, data mining and knowledge discovery from databases, soft computing, and information technology for tourism.
"About the title" may belong to another edition of this title.
Shipping rates from Germany to U.S.A.
| Item | 5 to 7 business days | 7 to 10 business days |
|---|---|---|
| First item | US$ 35.03 | US$ 35.03 |
Payment methods
- Bank Wire Transfer
- Check
- Paypal
Store description
Das Unternehmen AHA-BUCH GmbH: Seit der Gründung von AHA-BUCH im Juli 2005 ist unser Hauptziel, zufriedenen Kunden so schnell und so preisgünstig wie möglich ihren Bücherwunsch zu erfüllen. Unsere Firma beschäftigt 16 Mitarbeiter, die nur ein Ziel kennen: den Kunden und seine Wünsche! Auf über 3700 m2 Fläche haben wir über 100.000 Bücher, Modernes Antiquariat und Spiele auf Lager.
Specialty
Kinderbücher & Kinderhör Casetten, German Books, Software, Natur & Tiere, Ratgeber, Sachbücher, Englische Bücher, Medizin & Gesundheit, Universität & StudiumSeller's business information
AHA-BUCH GmbH
Garlebsen 48
Einbeck, Germany 37574
Terms of sale
General Terms and Conditions and Customer Information / Privacy Policy
I. General Terms and Conditions
§ 1 Basic provisions
(1) The following terms and conditions apply to all contracts that you conclude with us as a provider (AHA-BUCH GmbH) via the Internet platforms AbeBooks and/or ZVAB. Unless otherwise agreed, the inclusion of any of your own terms and conditions used by you will be objected to
(2) A consumer within the meaning of the following regulations is any natural person who concludes a legal transaction for purposes that can predominantly be attributed neither to their commercial nor their independent professional activity. An entrepreneur is any natural or legal person or a partnership with legal capacity who, when concluding a legal transaction, acts in the exercise of his independent professional or commercial activity.
§ 2 Conclusion of the contract
(1) The object of the contract is the sale of goods.
(2) If an article is listed by us at AbeBooks or ZVAB, the activation of the offer page at AbeBooks or ZVAB constitutes the binding offer to conclude a contract under the conditions contained in the article page.
(3) The contract is concluded via the online shopping cart system as follows:
The goods intended for purchase are stored in the "shopping cart". Via the corresponding button in the navigation bar you can call up the "shopping cart" and make changes there at any time.
After calling up the "Checkout" page and entering the personal data as well as the payment and shipping conditions, all order data will be displayed again on the order overview page.
Before sending the order, you have the option of checking all information again, changing it (also via the "back" function of the Internet browser) or cancelling the purchase.
By submitting the order via the "Buy now" button, you declare the acceptance of the offer in a legally binding manner, whereby the contract is concluded.
(4) The processing of the order and transmission of all information required in connection with the conclusion of the contract is partly automated by e-mail. You must therefore ensure that the e-mail address you have stored with us is correct, that the receipt of the e-mails is technically ensured and, in particular, that spam filters do not prevent it.
§ 3 Right of retention, retention of title
(1) You can only exercise a right of retention if it concerns claims from the same contractual relationship.
(2) The goods remain our property until full payment of the purchase price.
§ 4 Warranty
(1) The statutory warranty rights exist.
(2) In the case of used goods, the warranty period is one year from delivery of the item, deviating from the statutory regulation. The shortening of the deadline does not apply:
- culpably caused damages attributable to us from injury to life, limb or health and in the case of other damages caused intentionally or through gross negligence;
- insofar as we have fraudulently concealed the defect or have assumed a guarantee for the quality of the item.
(3) As a consumer, you are requested to check the item immediately upon delivery for completeness, obvious defects and transport damage and to inform us and the freight forwarder of any complaints as soon as possible. If you do not comply with this, this will have no effect on your statutory warranty claims.
§ 5 Choice of law, place of performance, place of jurisdiction
(1) German law shall apply. In the case of consumers, this choice of law shall only apply insofar as this does not withdraw the protection afforded by mandatory provisions of the law of the state of the consumer's habitual residence (principle of favourability).
(2) The place of performance for all services arising from the existing business relationships with us as well as the place of jurisdiction is our registered office, insofar as you are not a consumer, but a merchant, a legal entity under public law or a special fund under public law. The same applies if you do not have a general place of jurisdiction in Germany or the EU or if the domicile or habitual residence is not known at the time the action is brought. The right to appeal to the court at another statutory place of jurisdiction remains unaffected by this.
(3) The provisions of the UN Convention on Contracts for the International Sale of Goods shall expressly not apply.
II. Customer Information
- Identity of the Seller
AHA-BUCH GmbH
Garlebsen 48
D-37574 Einbeck
Germany
Telephone: 055639996039
E-mail: abebooks@aha-buch.de.
Alternative dispute resolution:
The European Commission provides a platform for out-of-court online dispute resolution (ODR platform), which can be accessed under https://ec.europa.eu/odr.
- Information on the conclusion of the contract
The technical steps for the conclusion of the contract, the conclusion of the contract itself and the correction options are carried out in accordance with the provisions "Conclusion of the contract" of our General Terms and Conditions (Part I.).
- Contract language, contract text storage
3.1. The contract language is german.
3.2. The complete text of the contract will not be stored by us. Before sending the order, the contract data can be printed out or electronically saved via the print function of the browser. After receipt of the order by us, the order data, the legally prescribed information for distance contracts and the General Terms and Conditions will be sent to you again by e-mail.
- Essential characteristics of the goods or services
The essential characteristics of the goods and/or services can be found in the respective offer.
- Prices and terms of payment
5.1. The prices stated in the respective offers as well as the shipping costs represent total prices. They include all price components including all applicable taxes.
5.2. The shipping costs incurred are not included in the purchase price. They can be called up via a correspondingly designated button on our website or in the respective offer, are shown separately in the course of the ordering process and are to be borne by you in addition, unless free shipping has been promised.
5.3. If the delivery is made to countries outside the European Union, we may incur additional costs for which we are not responsible, such as.B customs duties, taxes or money transfer fees (transfer or exchange rate fees of the credit institutions), which are to be borne by you. Any costs incurred for the transfer of money shall also be borne by you in cases where the delivery is made to an EU member state, but the payment was initiated outside the European Union.
5.4. The payment methods available to you are indicated under a corresponding button on our website or in the respective offer.
5.5. Unless otherwise stated for the individual payment methods, the payment claims from the concluded contract are due for payment immediately.
- Terms of delivery
6.1. The terms of delivery, the delivery date and, if applicable, existing delivery restrictions can be found under a correspondingly designated button on our website or in the respective offer.
Insofar as no other deadline is specified in the respective offer or under the correspondingly designated button, the delivery of the goods will take place within 3-5 days after conclusion of the contract (in the case of agreed advance payment, however, only after the time of your payment instruction).
6.2. Insofar as you are a consumer, it is regulated by law that the risk of accidental loss and accidental deterioration of the sold item during dispatch shall only pass to you upon handover of the goods, regardless of whether the shipment is insured or uninsured. This does not apply if you have independently commissioned a transport company not named by the entrepreneur or a person otherwise designated to carry out the shipment.
- Statutory liability for defects
Liability for defects is governed by the "Warranty" provision in our General Terms and Conditions (Part I).
last update: 01/06/2022
Privacy policy
Unless otherwise stated below, the provision of your personal data is neither required by law or contract, nor is it necessary for the conclusion of a contract. You are not obliged to provide the data. Failure to provide this will have no consequences. This only applies if no other information is provided in the subsequent processing operations.
Collection, processing and disclosure of personal data when placing orders
When ordering, we collect and process your personal data only to the extent necessary to fulfil and process your order and to process your enquiries. The provision of the data is necessary for the conclusion of the contract. Failure to provide this provision means that no contract can be concluded. The processing takes place on the basis of Art. 6 para. 1 lit.b GDPR and is necessary for the performance of a contract with you.
Your data will be passed on, for example, to the shipping companies and dropshipping providers selected by you, payment service providers, service providers for order processing and IT service providers.
In all cases, we strictly observe the legal requirements. The scope of data transmission is limited to a minimum.
Duration of storage
After completion of the contract, the data will first be stored for the duration of the warranty period, then taking into account legal, in particular tax and commercial retention periods and then deleted after expiry of the period, unless you have consented to further processing and use.
Rights of the data subject
If the legal requirements are met, you have the following rights under Articles 15 to 20 GDPR: Right to information, to correction, to erasure, to restriction of processing, to data portability.
In addition, pursuant to Article 21 (1) GDPR, you have the right to object to processing based on Article 6 (1) f GDPR and to processing for direct marketing purposes.
Contact us on request. The contact details can be found in our imprint.
Right to lodge a complaint with the supervisory authority
In accordance with Article 77 GDPR, you have the right to complain to the supervisory authority if you believe that the processing of your personal data is not lawful.
Right to object
If the personal data processing listed here is based on our legitimate interest pursuant to Art. 6 para. 1 lit. f GDPR, you have the right to object to this processing at any time with effect for the future for reasons arising from your particular situation.
Shipping terms
We ship your order after we received them
for articles on hand latest 24 hours,
for articles with overnight supply latest 48 hours.
In case we need to order an article from our supplier our dispatch time depends on the reception date of the articles, but the articles will be shipped on the same day.
Our goal is to send the ordered articles in the fastest, but also most efficient and secure way to our customers.