Department of Information Systems
Organizational & Information Security Group Organizational & Information Security Group
Contact OISG

Representative Publications

Information Security Culture & Governance

  • Chia, P. Maynard, S., and Ruighaver, A.B. (2003) "Understanding Organisational Security Culture" in Information Systems: The Challenges of Theory and Practice, Hunter, M. G. and Dhanda, K. K. (eds), Information Institute, Las Vegas, USA, pages 335 - 365.
  • Maynard, S., and Ruighaver, A.B. (2003) "Development and Evaluation of Information System Security Policies" in Information Systems: The Challenges of Theory and Practice, Hunter, M. G. and Dhanda, K. K. (eds), Information Institute, Las Vegas, USA, pages 366 - 393.
  • Maynard, S., and Ruighaver, A.B. (2002) "Evaluating IS Security Policy Development". Third Australian Information Warfare and Security Conference, Perth, Australia, 28-29 November 2002.
  • Chia, P. Maynard, S., and Ruighaver, A.B. (2002b) "Understanding Organisational Security Culture". Sixth Pacific Asia Conference on Information Systems, Tokyo, Japan, pages 731-740, 2-3 September 2002.
  • Chia, P., Maynard, S., and Ruighaver, A.B. (2002)  “Exploring Organizational Security Culture: developing a comprehensive research model”. IS ONE World Conference, Las Vegas, Nevada USA, 4-5 April 2002.
  • Maynard, S., Ruighaver, A.B. and Sandow-Quirk, M. (2002)  “Redefining the IS Security Policy”. IS ONE World Conference, Las Vegas, Nevada USA, 4-5 April 2002.
  • Maynard, S., Burstein, F. and Arnott, D. (2001) “A Multi-faceted Decision Support System Evaluation Approach” Journal of Decision Systems, 10(3-4), pages 395-428.
  • Maynard, S and Ruighaver, A (1999) “An Analysis of IS Security Policy Evaluation” Proceedings of the Tenth Australasian Conference on Information Systems, Wellington, New Zealand, 1-3 December 1999 Pages 577-585.

Computer Forensics

  • Ahmad, A., Ruighaver, A.B.., Design of a Network-Access Audit Log for Security Monitoring and Forensic Investigation, Proceedings of the 1st Australian Computer Network, Information & Forensics Conference, Perth, Nov 24, 2003. [ PDF]
  • Ahmad, A., Ruighaver, A.B., Improved Event Logging for Security and Forensics: Developing Audit Management Infrastructure Requirements, ISOneWorld, Las Vegas, USA, Apr 23-25, 2003.[PDF].
  • Ahmad, A., Ruighaver, A.B., FIRESTORM: Exploring the Need for a Forensic Tool for Pattern Correlation in Windows NT Audit Logs, Proceedings of the 3rd Information Warfare Conference, Perth, Nov 28-29, 2002. [PDF]
  • Ahmad, A., The Forensic Chain of Evidence Model: Improving the Process of Evidence Collection in Incident Handling Procedures, Proceedings of the 6th Pacific Asia Conference on Information Systems, Tokyo, Japan, 2-4 Sept, 2002. [PDF]
  • Ahmad, A., Ruighaver, A.B., A Top-Down Approach Towards Translating Organizational Security Policy Directives to System Audit Configuration, Proceedings of the 17th IFIP TC 11 International Conference on Information Security, Cairo, Egypt, 7-9 May, 2002. [PDF]