All Issue

2026 Vol.14, Issue 3 Preview Page

Research Article

30 September 2026. pp. 129-143
Abstract
본 연구는 조직 내 역할과 커뮤니케이션에 기반한 정보보안 환경 모호성이 조직원들의 정보보안 준수 및 적극적 참여 행동에 미치는 영향을 조사한다. 효율성 증대를 위해 도입한 정보시스템의 활용이 증가함에 따라, 조직 내부자에 의한 정보 유출 위험 또한 높아지고 있다. 본 연구는 정보보안 정책이 확립된 조직의 조직원 475명을 대상으로 설문 조사를 수행하여, 역할 및 커뮤니케이션의 모호성이 조직원의 보안 관련 행동에 미치는 영향을 분석하였다. 연구 결과, 정보보안 역할 모호성이 조직원의 보안 정책에 대한 진정성 인식을 통해 역할 내 행동과 역할 외 행동을 줄이는 조건임을 확인하였다. 또한, 커뮤니케이션 모호성은 역할 모호성이 진정성 인식과 역할 내 행동에 미치는 부정적 영향을 강화하는 조건임을 확인하였다. 연구 결과는 조직 커뮤니케이션과 업무 영역 내 모호성이 조직원의 보안 준수 및 적극 참여 행동에 미치는 부정적 영향을 확인함으로써, 역설적으로 내부의 정보보안 수준 달성을 위해 조직이 고려해야 할 커뮤니케이션 및 업무 전략 수립에 기여한다.
This study investigates the impact of information security related organizational environment, such as role and communication, on information security compliance and active participation among employees. The risk of organizational insider information leakage grows in parallel with the adoption of advanced information systems. Using survey data from 475 employees in organizations with established information security policies, this research tests the influence of role and communication ambiguity on IS behaviors. These findings reveal that information security role ambiguity decreases both information security in-role behavior and IS extra-role behavior by undermining employees’ perceptions of information security policy authenticity. Moreover, information security communication ambiguity exacerbates these negative effects, further diminishing information security policy authenticity and information security in-role behavior. The results underscore the detrimental impact of ambiguity in organizational roles and communication on information security compliance and participation, emphasizing the need for clear communication and defined work strategies to enhance internal information security practices.
References
  1. Verizon, Data breach investigations report, 2024.

  2. B. Bulgurcu, H. Cavusoglu, and, I. Benbasat, “Information security policy compliance: An empirical study of rationality-based beliefs and information security Awareness”. MIS Quarterly, Vol. 34, No. 3, pp. 523-548, 2010.

    10.2307/25750690
  3. A. Aggarwal, and S.K. Srivastava, “Exploring eustress and fear: A new perspective on protection motivation in information security policy compliance within the financial sector”, Computers & Security, Vol. 142, pp. 103857, 2024.

    10.1016/j.cose.2024.103857
  4. P. Bitrián, I. Buil, S. Catalán, and D. Merli, “Gamification in workforce training: Improving employees’ self-efficacy and information security and data protection behaviours”, Journal of Business Research, Vol. 179, pp. 114685, 2024.

    10.1016/j.jbusres.2024.114685
  5. Y. Chen, W. Xia, and K. Cousins, “Voluntary and instrumental information security policy compliance: An integrated view of prosocial motivation, self-regulation and deterrence”, Computers & Security, Vol. 113, pp. 102568, 2022.

    10.1016/j.cose.2021.102568
  6. X. Wang, and J. Xu, “Deterrence and leadership factors: Which are important for information security policy compliance in the hotel industry”, Tourism Management, Vol. 84, pp. 104282, 2021.

    10.1016/j.tourman.2021.104282
  7. J. D’Arcy, and P.L. Teh, “Predicting employee information security policy compliance on a daily basis: The interplay of security-related stress, emotions, and neutralization”, Information & Management, Vol. 56, No. 7, pp. 103151, 2019.

    10.1016/j.im.2019.02.006
  8. I. Hwang, and R. Seo, “Mitigating security stress: Exploring the contingent role of collaborative communication in enhancing information security compliance”, Computers & Security, Vol. 151, pp. 104326, 2025.

    10.1016/j.cose.2025.104326
  9. K. Ruck, and M. Welch, “Valuing internal communication; Management and employee perspectives”, Public Relations Review, Vol. 38, No. 2, pp. 294-302, 2012.

    10.1016/j.pubrev.2011.12.016
  10. 조인호, 조준석, “조직 내 커뮤니케이션 불확실성과 모호성의 차별성”, 언론정보연구, 제49권, 제1호, pp. 220-258, 2012.

    10.22174/jcr.2012.49.1.220
  11. R. Ayyagari, V. Grover, and R. Purvis, “Technostress: Technological antecedents and implications”, MIS Quarterly, Vol. 35, No. 4, 831-A10, 2011.

    10.2307/41409963
  12. 백재환, 박현환, “역할갈등과 역할모호성이 공무원의 조직시민행동에 미치는 영향: 조직변화관리의 매개효과를 중심으로”, 인문사회과학연구, 제34권, 제1호, pp. 299-319, 2026.

  13. H. Afzali, and S. Kim, “Consumers’ responses to corporate social responsibility: The mediating role of CSR authenticity,” Sustainability, Vol. 13, No. 4, 2021, pp. 2224.

    10.3390/su13042224
  14. C.J. Steiner, and Y. Reisinger, “Understanding existential authenticity”, Annals of Tourism Research, Vol. 33, No. 2, pp. 299-318, 2006.

    10.1016/j.annals.2005.08.002
  15. K.D. Loch, H.H. Carr, and M.E. Warkentin, “Threats to information systems: Today’s reality, yesterday’s understanding”, MIS Quarterly, Vol. 16, No. 2, pp. 173-186, 1992.

    10.2307/249574
  16. R. West, “The psychology of security”, Communications of the ACM, Vol. 51, No. 4, pp. 34-40, 2008.

    10.1145/1330311.1330320
  17. L.J. Williams, and S.E. Anderson, “Job satisfaction and organizational commitment as predictors of organizational citizenship and in-role behaviors”, Journal of Management, Vol. 17, No. 3, pp. 601-617, 1991.

    10.1177/014920639101700305
  18. J.S.C. Hsu, S.P. Shih, Y.W. Hung, and P.B. Lowry, “The role of extra-role behaviors and social controls in information security policy effectiveness”, Information Systems Research, Vol. 26, No. 2, pp. 282-300, 2015.

    10.1287/isre.2015.0569
  19. Y. Yin, C. Hsu, and Z. Zhou, “Employees’ in-role and extra-role information security behaviors from the PE fit perspective”, Computers & Security, Vol. 133, pp. 103390, 2023.

    10.1016/j.cose.2023.103390
  20. X. Yi, X. Fu, L. Yu, and L. Jiang, “Authenticity and loyalty at heritage sites: The moderation effect of postmodern authenticity,” Tourism Management, Vol. 67, pp. 411-424, 2018.

    10.1016/j.tourman.2018.01.013
  21. 황인호, “정보보안 정책 조직 공정성과 진정성의 영향: 가치 일치의 조절 효과”, 한국전자통신학회 논문지, 제20권, 제1호, pp. 189-198, 2025.

  22. A. Pérez, “Building a theoretical framework of message authenticity in CSR communication,” Corporate Communications: An International Journal, Vol. 24, No. 2, pp. 334-350, 2019.

    10.1108/CCIJ-04-2018-0051
  23. I. Hwang, R. Seo, and S. Hu, “Boosting employee information security compliance: The contingent roles of task-technology and person-organization fits”, Humanities and Social Sciences Communications, Vol. 12, No. 1, pp. 1-13, 2025.

    10.1057/s41599-025-04718-x
  24. M. Tarafdar, Q. Tu, B.S. Ragu-Nathan, and T.S. Ragu-Nathan, “The impact of technostress on role stress and productivity”, Journal of Management Information Systems, Vol. 24, No. 1, pp. 301-328, 2007.

    10.2753/MIS0742-1222240109
  25. 김인아, “국내 병원간호사 직무스트레스 관리 프로그램 효과에 대한 메타분석”, 융복합지식학회논문지, 제9권, 제2호, pp. 71-81, 2021.

  26. 문영경, 박선영, “대학생의 진로 스트레스가 우울에 미치는 영향: 삶의 만족도의 매개효과 검증”, 융복합지식학회논문지, 제12권, 제3호, pp. 115-123, 2024.

  27. F.N. Shadbad, and D. Biros, “Technostress and its influence on employee information security policy compliance”, Information Technology & People, Vol. 35, No. 1, pp. 119-141, 2022.

    10.1108/ITP-09-2020-0610
  28. J. Schaubroeck, J.L. Cotton, and K.R. Jennings, “Antecedents and consequences of role stress: A covariance structure analysis”, Journal of Organizational Behavior, Vol. 10, No. 1, pp. 35-58, 1989.

    10.1002/job.4030100104
  29. A.L. Ackfeldt, and N. Malhotra, “Revisiting the role stress‐commitment relationship: Can managerial interventions help?”, European Journal of Marketing, Vol. 47, No. 3-4, pp. 353-374, 2013.

    10.1108/03090561311297373
  30. S.A. Youngblood, “Balancing the rhetorical tension between right to know and security in risk communication: Ambiguity and avoidance”, Journal of Business and Technical Communication, Vol. 26, No. 1, pp. 35-64, 2012.

    10.1177/1050651911421123
  31. I. Hwang, and R. Seo, “When communications fail and values clash: What drives employees to resist information security compliance?”, International Journal of Business Communication, Advance Online Publication, 23294884261418215, 2026.

    10.1177/23294884261418215
  32. 김문준, 김노사, 노유진, “조직문화 유형이 조직유효성에 미치는 영향에 관한 연구-조직커뮤니케이션의 조절효과 중심으로”, 산업진흥연구, 제2권, 제1호, pp. 15-29, 2017.

    10.21888/KPAQ.2017.6.29.2.297
  33. J.C. Nunnally, “Psychometric Theory”, New York, McGraw-Hill, 1978.

  34. J.F. Hair, W. Black, B. Babin, and R.E. Anderson, “Multivariate Data Analysis”, Boston, Cengage, 2019.

  35. C. Fornell, and D.F. Larcker, “Evaluating structural equation models with unobservable variables and measurement error”, Journal of Marketing Research, Vol. 18, No. 1, pp. 39-50, 1981.

    10.1177/002224378101800104
  36. P.M. Podsakoff, S.B. MacKenzie, J. Lee, and N.P. Podsakoff, “Common method biases in behavioral research: A critical review of the literature and recommended remedies”, Journal of Applied Psychology, Vol. 88, No. 5, pp. 879-903, 2003.

    10.1037/0021-9010.88.5.879
Information
  • Publisher :The Society of Convergence Knowledge
  • Publisher(Ko) :융복합지식학회
  • Journal Title :The Society of Convergence Knowledge Transactions
  • Journal Title(Ko) :융복합지식학회논문지
  • Volume : 14
  • No :3
  • Pages :129-143