Martina Neri, Federico Niccolini and Luigi Martino
Cyberattacks are becoming increasingly widespread, and cybersecurity is therefore increasingly important. Although the technological aspects of cybersecurity are its best-known…
Abstract
Purpose
Cyberattacks are becoming increasingly widespread, and cybersecurity is therefore increasingly important. Although the technological aspects of cybersecurity are its best-known characteristics, the cybersecurity phenomenon goes beyond the detection of technological impacts, and encompasses all the dimensions of an organization. This study thus focusses on an additional set of organizational elements. The key elements of cybersecurity organizational readiness depicted here are cybersecurity awareness, cybersecurity culture and cybersecurity organizational resilience (OR). This study aims to qualitatively assess small and medium enterprises’ (SMEs) overall level of organizational cybersecurity readiness.
Design/methodology/approach
This study focused on conducting a cybersecurity organizational readiness assessment using a sample of 53 Italian SMEs from the information and communication technology sector. Informed mixed method research, this study was conducted consistent with the principles of the explanatory sequential mixed method design, and adopting a quanti-qualitative methodology. The quantitative data were collected through a questionnaire. Qualitative data were subsequently collected through semi-structured interviews.
Findings
Although many elements of the technical aspects of cybersecurity OR have yielded very encouraging results, there are still some areas that require improvement. These include those facets that constitute the foundation of cybersecurity awareness, and, thus, a cybersecurity culture. This result highlights that the areas in need of improvement are exactly those that are most important in fighting against cyber threats via organizational cybersecurity readiness.
Originality/value
Although the importance of SMEs is obvious, evidence of such organizations’ attitudes to cybersecurity are still limited. This research is an attempt to depict the organizational issue related to cybersecurity, i.e. overall cybersecurity organizational readiness.
Details
Keywords
Iacopo Cavallini, Daniela Marzo, Luisa Scaccia, Sara Scipioni and Federico Niccolini
Scuba diving tourism is reputed to be a potential low-impact recreational activity that allow environmental conservation and socioeconomic benefits for local communities. Few…
Abstract
Purpose
Scuba diving tourism is reputed to be a potential low-impact recreational activity that allow environmental conservation and socioeconomic benefits for local communities. Few studies have addressed the issue of sustainability of scuba diving tourism through the simultaneously investigation on the economic and socio-cultural aspects and its implications for tourism development. This study aims to examine the scuba diving tourism in three under-explored North African tourism destinations with high ecotourist potential. The authors present an exploratory picture of scuba diving tourist demand, divers' preferences, motivations for recreational diving experiences and their propensity towards conservation.
Design/methodology/approach
The authors developed a case study research strategy collecting profile data on 123 divers. Furthermore, regression analysis was performed to investigate the divers' preferences, motivations and propensity towards conservation.
Findings
The divers' limited number, the presence of mainly local seasonal tourists and a moderate propensity towards conservation influence the potential of the diving tourism segment to generate significant socioeconomic benefits for local sustainable development in these destinations. However, establishing a marine protected area (MPA) could foster the development of a long-term strategy for scuba diving tourism, improve conservation awareness and increase divers' satisfaction.
Practical implications
Diverse profiles, preferences and motivations can provide tools to sustainably manage and preserve coastal and marine biodiversity, while also maximising the quality of the recreational experience. One of the most effective site-based strategies to orient the diving sector towards sustainability involves the design and strengthening of MPAs.
Originality/value
The research provides an original contribution to the debate on sustainable tourism strategies by demonstrating how the study of economic and socio-cultural aspects of scuba diving could provide guidelines to orient the tourism development of marine and coastal areas towards the principles of sustainability (also through the establishment of MPAs). The findings present an overview of the sustainability of the scuba diving tourism segment by investigating the preferences, motivations and inclination towards conservation among tourists for whom the diving experience is not a core holiday activity.
Details
Keywords
Martina Neri, Elisabetta Benevento, Alessandro Stefanini, Davide Aloini, Federico Niccolini, Annalaura Carducci, Ileana Federigi and Gianluca Dini
Information security awareness (ISA) mainly refers to those aspects that need to be addressed to effectively respond to information security challenges. This research used focus…
Abstract
Purpose
Information security awareness (ISA) mainly refers to those aspects that need to be addressed to effectively respond to information security challenges. This research used focus groups to empirically investigate the main ISA dimensions that emerge from the Italian public health-care sector. This study aims to identify the most critical dimension of ISA and to evaluate the diffusion and maturity of information security policies (ISPs) of health-care infrastructure and training programs.
Design/methodology/approach
This research adopted a qualitative research design and focus groups as a research methodology. Data analysis was conducted using the NVIVO 14 software package and followed the principles of thematic analysis.
Findings
The focus group results highlighted that health-care personnel find it difficult to comply with the main ISA dimensions, a situation that leads to risky behaviors. Password management, data storage and transfer and instant messaging applications emerged as the most critical of the main ISA dimensions in the context of this research. It also transpired that ISPs are not all-encompassing as they mainly focus on privacy problems but neglect security concerns. Finally, training programs are not fully implemented in the investigated context, thus undermining their positive enhancing role for ISA.
Originality/value
The public health-care sector emerged as a critical yet still under-investigated context. The need for an in-depth investigation of organizational sciences approaches to overcoming information security challenges is also recommended in several prior research studies.