← Back to Research Papers

Determinants of oral health-related quality of life in older adults receiving maintenance hemodialysis.

Authors: Wang P, Hong SS, Lu SY, Wang Y, Liu YY, Feng XL, Yang LH, Chen JL, Ding Y, Chen WF
Journal: Frontiers in public health
mental health psychology open access

Abstract

Information security breaches have become increasingly costly over time and reached a critical threshold in 2026. According to the 2026 IBM Cost of a Data Breach Report, the global average cost of a security incident has climbed to a record-breaking US$4.88 million (). In the Middle East, while the region has seen a moderate 18% stabilization in costs due to aggressive adoption of AI-driven security automation, the average cost remains significantly high at US$7.29 million, representing the second-highest regional average in the world (). Furthermore, the “human factor” continues to be the most pervasive vulnerability; current empirical findings indicate that approximately 68–88% of all organizational breaches involve an explicit human element, ranging from sophisticated AI-driven phishing campaigns to simple system misconfigurations (; ). This persistence of human-related risk underscores that modern organizational resilience depends less on hardening technical perimeters and substantially more on the psychological, volitional, and task-aligned compliance behaviors of individual enterprise users. To mitigate these systemic exposures, organizations develop comprehensive Information Security Policies (ISPs). Senior management must pay close, sustained attention to ensuring employee compliance with these policies (). Grounded in the peer-reviewed Information Systems (IS) literature, Information Security Policy Compliance (ISPC) is conceptualized as an employee’s deliberate socio-behavioral choice to safeguard their organization’s informational and technological assets by adhering to mandated directives (; ; ). When employee actions are managed and guided properly, an ISP serves as an effective behavioral control; conversely, when compliance behaviors are unmonitored or structurally unsupported, the human element becomes a primary vector for organizational vulnerability (). Because security compliance is fundamentally an issue of human behavior, achieving consistent compliance is vital to reducing internal threats and cultivating an institutional safety culture (; ; ). Extensive research has examined the multi-dimensional internal, socio-psychological, and external variables that motivate or deter human adherence to ISPs (; ; ; ; ; ; ; ; ). To map these behavioral pathways, researchers have heavily deployed socio-behavioral models such as the Theory of Planned Behavior (TPB), Protection Motivation Theory (PMT), technology threat avoidance theory (TTAT), and General Deterrence Theory (GDT) (; ; ). However, while these motivational frameworks have established a profound footprint in the ISPC literature, a critical contextual and theoretical gap persists. Prior behavioral research overwhelmingly models compliance as an abstract, independent psychological intent, treating policy adherence as a purely volitional choice. It consistently overlooks the operational reality that interacting with, executing, and adhering to security controls (e.g., managing complex passwords, classifying files, or following multi-factor authentication paths) constitutes an active workplace task that must be performed within the boundaries of the organization’s existing technology infrastructure.