Abstract

Information systems security policy (ISSP) compliance remains a critical challenge, with human factors continuously cited as a primary cause of security violations. This study examines the drivers of deviant security behaviors in the pervasive context of remote work. Grounded in Tittle’s Control Balance Theory (CBT), we investigate how control imbalances, violation motivation, and facilitating conditions lead to violation intention. We further derive insights from Self-Determination Theory to explore the moderating role of employee autonomy. Employing a vignette-based survey and PLS-SEM analysis, this research tests a model proposing that remote work and perceived autonomy significantly moderate the core relationships between CBT constructs and intention to violate ISPs. The findings aim to provide novel theoretical insights, offering organizations a refined understanding of how to manage security compliance in modern, remote work environments.

Share

COinS