IS Risk Management in Morocco: Between regulatory ambitions and cultural challenges - A critical analysis of the current situation

Abstract

This study critically assesses Information Systems (IS) risk management in Morocco, examining the interactions between the regulatory framework, national standards, and cultural and organizational factors. The objective is to evaluate the current system's effectiveness and identify challenges specific to the Moroccan context. The methodology relies on an in-depth documentary analysis of legislative texts, national guidelines, and scientific publications, complemented by a comparative analysis with international standards. The results reveal an ambitious regulatory framework but a limited adoption of IS risk management practices, particularly among SMEs. The study highlights the significant influence of cultural factors, such as attitude to risk and resistance to change, on implementing IS risk management strategies effectively. These findings underscore the need to adapt risk management approaches to the local context and intensify awareness and training efforts to improve the maturity of IS risk management in Morocco.

 

Keywords: IS Risk Management, Cybersecurity in Morocco, Regulatory Framework, IS Governance, Cultural Factors

JEL Classification: M15; G32

Paper type: Exploratory Research

Downloads

Download data is not yet available.
Published
2024-10-10
How to Cite
BELHAJ, H., KAMMAS, S., & AL MERIOUH, Y. (2024). IS Risk Management in Morocco: Between regulatory ambitions and cultural challenges - A critical analysis of the current situation. International Journal of Accounting, Finance, Auditing, Management and Economics, 5(10), 317-346. https://doi.org/10.5281/zenodo.13909392
Section
Articles