Afxentiadis, D E (2010) Interpreting a major event organization's efforts to reliably manage information security risks: the case of the Athens 2004 Olympics. PhD thesis, London School of Economics and Political Science, UK.
Abstract
The implementation of mega projects and events is increasingly becoming part of corporate and governmental reality in an effort to create global and frictionless operations and infrastructures that result into a new mobility that has been labelled as 'the most powerful and coveted stratifying factor in contemporary society'. The successful implementation of such mega projects and events usually relies on the highly reliable operations of technological infrastructures and the secure, yet flexible, management of information resources across a number of partnering organizations. However, the past performance of mega projects and events has been greatly criticised for inefficiency, lack of decision-making transparency and an overall lack of diligence with regards to the true nature and extent of associated risks. A need has been identified to investigate more thoroughly the mechanisms employed to manage and communicate risks across a number of vertical and horizontal project and event management dimensions. The objective would be to capture know-how and lessons learned from past experiences in order to support more successful, future mega-project implementations. The aim of this research is to increase understanding of the risk issues and concerns in the management of information systems security (ISS) in a major events context, in an effort to deliver highly reliable IS operations. The study is conducted by reviewing the analysis, design, management and risk communication processes of ISS in the Athens 2004 Olympic Games event. The research methodology adopts an interpretive mode of inquiry, where the management of ISS is longitudinally evaluated in terms of the organizational scope, context and culture, the expectations and motivations of different actors, the meanings assigned to various ISS risk signals and events, and the related patterns of behaviour and organizational actions and controls. The theoretical foundation that informs the collection and analysis of data is that of the Social Amplification of Risk Framework (SARF), which suggests that the experience of risk is determined by the direct physical consequences of a risk/risk event and the interaction of psychological, social, institutional and cultural processes. Findings from the case study under investigation indicate that a major event demonstrates high levels of operational and functional interdependence and complexity, directly or indirectly affecting ISS management efforts, decisions and communications. Principles of high reliability and mindful management can indeed improve overall ISS performance and management of risk, yet the structural and cultural aspects of a major event project will amplify/attenuate risk perceptions and constrain the effectiveness of such controls. Therefore, there is a need to improve understanding of such factors, incorporating this into risk evaluation, management and communication practices. In conclusion, this study shows that the management of IS security and integrity in an environment of great organizational reliability demands requires the appreciation of structural/functional interdependencies and cultural interactions. By sustaining mindful and reflexive processes and structures of risk communication and interpretation, ISS assurance and governance practices will allow organizations to demonstrate that they can reliably anticipate and contain ISS risks.
| Item Type: | Thesis (Doctoral) |
|---|---|
| Uncontrolled Keywords: | communication; complexity; evaluation; governance; megaprojects; information system; liability; partnering; performance; reliability; security; valuation; culture; effectiveness; efficiency; motivation; case study |
| Index terms: | mobility, case study, governance, becoming, efficiency, partnering, integrity, effectiveness, research methodology, investigation, interdependence, transparency, implementation, interaction, dimension, society, liability, motivation, meaning, risk perception, decision-making, complexity, megaproject, lessons learned, information system, Olympic Games |
| Subjects: | contractual arrangements, strategic project management, health monitoring assessment and metrics, psychology, data collection methods, business, research design and methodology, philosophical process, communities and social development, infrastructure and transport systems, liability law, behavioral psychology, information systems, environmental hazards, systems engineering, partnership management, organizational analysis, sociology, decision analysis, health safety and environment, professional development, performance management |
| Topics: | Procurement, Sustainability, Risk Management, Project Management, Engineering Principles, Health and Safety, Quality Management, Legal Issues, Governance, Stakeholder Management, Research Practice, Information Management, Organizational Design, Human Resources, Digital Applications, Urban Studies |
| Descriptive scope: | 4 PCEA |
N.B. Descriptive scope is a count of how many of the five facets of empirical research are indicated by the words used in title, abstract and keywords. It is not intended as a judgement on the research; merely a count of the kind of word we would expect to indicate Phenomenon, Concepts, Theoretical framing, Empirical techniques, Analytical techniques. If all five are present, then a code of “5 PCTEA” will indicate this. If you feel the coding for this record is questionable, we welcome discussion around the terms we matched or the way we categorized them. The facet you would expect may not be coded, or a facet may be coded inappropriately. This can also bear on a larger question, of which facets should be treated as defining in construction management research. Please get in touch, and we will look at it. More details here