Integrating individual and organizational perspectives: A TAM-TOE framework for ISO 27037 adoption in Malaysian government digital forensics agencies

Q1 Economics, Econometrics and Finance
Sairul Izwan Safie , Muzafar Zulkifli , Hairul Rizad Sapry , Syah Reezal Md Bashah
{"title":"Integrating individual and organizational perspectives: A TAM-TOE framework for ISO 27037 adoption in Malaysian government digital forensics agencies","authors":"Sairul Izwan Safie ,&nbsp;Muzafar Zulkifli ,&nbsp;Hairul Rizad Sapry ,&nbsp;Syah Reezal Md Bashah","doi":"10.1016/j.joitmc.2025.100595","DOIUrl":null,"url":null,"abstract":"<div><div>The adoption of ISO 27037, the international standard for digital evidence handling, remains poorly understood in emerging economy government contexts despite its critical importance for cybersecurity and judicial integrity. Existing literature predominantly examines private-sector implementations in developed economies, neglecting the unique institutional and resource constraints faced by public agencies in developing nations. This study addresses this gap by investigating ISO 27037 adoption among Malaysian government digital forensics professionals through an innovative integration of the Technology Acceptance Model (TAM) and Technology-Organization-Environment (TOE) framework. The research develops a comprehensive theoretical model combining individual cognitive factors (training, perceived ease of use, perceived usefulness, and behavioral intention) with organizational, technological and environmental determinants. A key innovation is conceptualizing organizational readiness as a second-order construct comprising six dimensions: digital forensic readiness, resource availability, governance structures, compliance culture, leadership support, and institutional trust. Using quantitative survey methodology and Partial Least Squares Structural Equation Modeling (PLS-SEM), the study examines how individual cognitive factors influence adoption, the relative importance of organizational versus technological and environmental factors, and the pathway from individual acceptance through organizational readiness to actual implementation behaviors. Results demonstrate the complementary roles of TAM and TOE frameworks, with organizational readiness serving as a critical mediating mechanism between individual acceptance and implementation outcomes. The findings provide both theoretical advancement and practical insights for policymakers and practitioners, offering evidence-based guidance for developing targeted implementation strategies that address both individual acceptance factors and organizational capacity constraints. The research contributes to strengthening digital forensics capabilities in Malaysia's evolving cybersecurity landscape while providing a framework applicable to similar emerging economy contexts.</div></div>","PeriodicalId":16678,"journal":{"name":"Journal of Open Innovation: Technology, Market, and Complexity","volume":"11 3","pages":"Article 100595"},"PeriodicalIF":0.0000,"publicationDate":"2025-07-18","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Journal of Open Innovation: Technology, Market, and Complexity","FirstCategoryId":"1085","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S2199853125001301","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"Economics, Econometrics and Finance","Score":null,"Total":0}
引用次数: 0

Abstract

The adoption of ISO 27037, the international standard for digital evidence handling, remains poorly understood in emerging economy government contexts despite its critical importance for cybersecurity and judicial integrity. Existing literature predominantly examines private-sector implementations in developed economies, neglecting the unique institutional and resource constraints faced by public agencies in developing nations. This study addresses this gap by investigating ISO 27037 adoption among Malaysian government digital forensics professionals through an innovative integration of the Technology Acceptance Model (TAM) and Technology-Organization-Environment (TOE) framework. The research develops a comprehensive theoretical model combining individual cognitive factors (training, perceived ease of use, perceived usefulness, and behavioral intention) with organizational, technological and environmental determinants. A key innovation is conceptualizing organizational readiness as a second-order construct comprising six dimensions: digital forensic readiness, resource availability, governance structures, compliance culture, leadership support, and institutional trust. Using quantitative survey methodology and Partial Least Squares Structural Equation Modeling (PLS-SEM), the study examines how individual cognitive factors influence adoption, the relative importance of organizational versus technological and environmental factors, and the pathway from individual acceptance through organizational readiness to actual implementation behaviors. Results demonstrate the complementary roles of TAM and TOE frameworks, with organizational readiness serving as a critical mediating mechanism between individual acceptance and implementation outcomes. The findings provide both theoretical advancement and practical insights for policymakers and practitioners, offering evidence-based guidance for developing targeted implementation strategies that address both individual acceptance factors and organizational capacity constraints. The research contributes to strengthening digital forensics capabilities in Malaysia's evolving cybersecurity landscape while providing a framework applicable to similar emerging economy contexts.
整合个人和组织视角:马来西亚政府数字取证机构采用ISO 27037的TAM-TOE框架
ISO 27037是数字证据处理的国际标准,尽管它对网络安全和司法诚信至关重要,但在新兴经济体的政府环境中,对其采用的理解仍然很少。现有文献主要研究发达经济体私营部门的实施,忽视了发展中国家公共机构面临的独特制度和资源限制。本研究通过技术接受模型(TAM)和技术-组织-环境(TOE)框架的创新整合,调查了马来西亚政府数字取证专业人员对ISO 27037的采用情况,从而解决了这一差距。该研究开发了一个综合的理论模型,将个人认知因素(训练、感知易用性、感知有用性和行为意图)与组织、技术和环境决定因素结合起来。一个关键的创新是将组织准备度概念化为包含六个维度的二阶结构:数字取证准备度、资源可用性、治理结构、合规文化、领导支持和机构信任。采用定量调查方法和偏最小二乘结构方程模型(PLS-SEM),研究了个体认知因素如何影响采用,组织与技术和环境因素的相对重要性,以及从个体接受到组织准备到实际实施行为的途径。结果证明了TAM和TOE框架的互补作用,组织准备作为个人接受和实施结果之间的关键中介机制。研究结果为政策制定者和实践者提供了理论进步和实践见解,为制定解决个人接受因素和组织能力约束的有针对性的实施策略提供了循证指导。该研究有助于加强马来西亚不断发展的网络安全环境中的数字取证能力,同时提供适用于类似新兴经济体背景的框架。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
Journal of Open Innovation: Technology, Market, and Complexity
Journal of Open Innovation: Technology, Market, and Complexity Economics, Econometrics and Finance-Economics, Econometrics and Finance (all)
CiteScore
11.00
自引率
0.00%
发文量
196
审稿时长
1 day
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信