To read this content please select one of the options below:

Information security and business continuity management in interorganizational IT relationships

Jonna Järveläinen (Information Systems Science, Turku School of Economics, University of Turku, Turku, Finland)

Information Management & Computer Security

ISSN: 0968-5227

Article publication date: 23 November 2012

4768

Abstract

Purpose

This paper aims to understand how managers of IT and information security aim to enhance information security and business continuity management in interorganizational IT relationships, such as outsourcing, cloud computing and interorganizational systems.

Design/methodology/approach

An explorative study of large multinational or local organizations operating in Finland was conducted. In total, 18 IT and information security managers were interviewed with semi‐structured questions.

Findings

First, the author discovered that several methods such as contracts, audits and standards were applied to balance power relationships between organizations or transfer responsibilities to other parties. The objectives of these methods are different within organizations. Second, the paper presents a comprehensive view of different security and continuity solutions in interorganizational IT relationships. The findings have practical value for IT managers and information security experts.

Research limitations/implications

The interviews were conducted in different organizations. Therefore, it is suggested that a single in‐depth study that examines the phenomenon on different organizational levels within one organization would supplement the findings. Further studies on the power, trust and control balance of interorganizational IT relationships are required.

Originality/value

This paper builds on and expands information security and business continuity literature by illustrating that audits and standards play different roles in interorganizational IT relationships within organizations, and that contracts form the basis of those relationships. Information security problems and business continuity breaches caused by external partners and outsourcing vendors affect the reputation and value of the client company. Therefore, managers must have the means to ensure the continuity of operations.

Keywords

Citation

Järveläinen, J. (2012), "Information security and business continuity management in interorganizational IT relationships", Information Management & Computer Security, Vol. 20 No. 5, pp. 332-349. https://doi.org/10.1108/09685221211286511

Publisher

:

Emerald Group Publishing Limited

Copyright © 2012, Emerald Group Publishing Limited

Related articles