研究生(外文):LIU, PO-YI
論文名稱(外文):Understanding employees' proactive extra-role behaviors on information security policies
指導教授(外文):HUNG, YU-WEN
外文關鍵詞:Information Security PolicyExtra-Role BehaviorProactive Extra-Role BehaviorCompliance Behavior
本研究採用問卷調查法來進行資料蒐集,填答者為具備資訊政策的企業之員工,有效樣本為 342 份。資料分析結果顯示,資訊安全身份、保護動機、獎勵會提升員工以想法實施為導向的主動角色外行為(發聲、管理層、公民道德);懲罰、認知好奇心、自主動機則會提升以解決問題為導向的主動角色外行為(個人自主性、檢舉)。以想法實施為導向與以解決問題為導向的主動角色外行為皆會提升員工的自願性遵守行為,但對於規範性遵守卻不具顯著效果。藉由本次的研究將能提供組織改善現有狀況之方向,以及提供組織在遵守資訊安全政策方面更進一步的見解。
The rapid advancement of digital technology has exposed governments and private
enterprises to numerous information security threats. Ensuring robust organizational information control has become crucial, particularly regarding internal security incidents related to employee behavior. Employee proactivity can significantly enhance an organization's overall information security posture.

This study investigates the relationship between employees' proactive extra-role
behaviors (idea implementation-oriented and problem solving-oriented) and their
compliance with information security policies (instrumental and voluntary). Data was collected through a survey of 342 employees from companies with established
information security policies.

Results indicate that information security role identity, protection motivation, and rewards foster idea implementation-oriented proactive behaviors (voice, stewardship, and civic virtue). Conversely, sanctions, intellectual curiosity, and autonomous motivation promote problem-solving-oriented proactive behaviors (individual initiative and whistleblowing). Both types of proactive behaviors influence employees' voluntary compliance, but not instrumental compliance.

This research provides valuable insights for organizations to enhance their
information security practices and offers a deeper understanding of factors influencing compliance with information security policies.
摘要 i
誌謝 iii
目錄 iv
表目錄 vi
圖目錄 viii
一、緒論 1
1.1 研究背景 1
1.2 研究動機 4
1.3 研究目的 5
1.4 研究流程 6
二、文獻探討 7
2.1 資訊安全政策(Information Security Policy) 7
2.2 主動角色外行為(Proactive Extra-Role Behavior) 10
2.3 遵守行為(Compliance Behavior) 17
三、研究方法 20
3.1 研究模型 20
3.2 研究假說 21
3.3 操作型定義 26
3.4 研究設計 28
四、資料分析 35
4.1 樣本結構分析 35
4.2 衡量模型 38
4.3 結構方程式分析 47
4.3.3 假說檢定結果 54
五、結論與建議 55
5.1 結論 55
5.2 理論與實務面意涵 56
5.3 研究限制與未來建議 59
參考文獻 61
附錄:研究問卷 77
