A study of factors influencing the security of core banking systems. of Bank for Agriculture and Agricultural Cooperatives (BAAC)
Main Article Content
Abstract
The purpose of this independent study is to analyze the factors influencing the security maintenance of the Core Banking System (CBS) of the Bank for Agriculture and Agricultural Cooperatives (BAAC). The study focuses on three factors: system usage behavior, security awareness, and training and knowledge provision. This quantitative research collected data from 400 BAAC employees using convenience sampling and a structured questionnaire. Data were analyzed using descriptive statistics (frequency, percentage, mean, and standard deviation) and inferential statistics (multiple regression analysis) to test the hypotheses. The findings reveal that all three factors have a positive and statistically significant influence on CBS security maintenance. Training and knowledge provision emerged as the most influential factor, followed by security awareness and system usage behavior, respectively. The results suggest that organizations should prioritize effective, practice-oriented training programs to equip employees with relevant knowledge, practical skills, and confidence in safeguarding the CBS. Furthermore, fostering strong security awareness can serve as a critical motivator, leading to improved system usage behavior and enhanced overall system security.
Article Details
References
กิตติศักดิ์ จันทร์นิเวศน์. (2565). ปัจจัยที่ส่งผลต่อความตั้งใจในการปฏิบัติตามนโยบายการรักษาความมั่นคงปลอดภัยทางไซเบอร์ขององค์กรในบริษัทกลุ่ม Oil and Gas. [วิทยานิพนธ์ปริญญามหาบัณฑิต]. มหาวิทยาลัยธรรมศาสตร์.
ธนาคารเพื่อการเกษตรและสหกรณ์การเกษตร. (2568). รายงานประจำปี 2567 ธนาคารเพื่อการเกษตรและสหกรณ์การเกษตร. เข้าถึงได้จาก https://www.baac.or.th
ธนาคารแห่งประเทศไทย. (2566). การกำกับดูแลสถาบันการเงินเฉพาะกิจ. สืบค้นจาก https://www.bot.or.th/th/supervision/financial-institutions/sfi.html
นริส อุไรพันธ์. (2565). ปัจจัยที่ส่งผลกระทบต่อความมั่นคงปลอดภัยไซเบอร์ของธุรกิจพาณิชย์อิเล็กทรอนิกส์สำหรับวิสาหกิจขนาดกลางและขนาดย่อมในประเทศไทย. [วิทยานิพนธ์มหาบัณฑิต]. มหาวิทยาลัยศรีปทุม.
Ajzen, I. (1991). The theory of planned behavior. Organizational Behavior and Human Decision Processes, 50(2), 179–211.
Alsaad, A., & Al-Okaily, M. (2022). Acceptance of protection technology in a time of fear: the case of Covid-19 exposure detection apps. Information Technology & People, 35(3), 1116–1142.
Angafor, G. N., Yevseyeva, I., & He, Y. (2020). Game-based information security/privacy education and training: A systematic literature mapping. Security and Privacy, 3(6), e126.
Bandura, A. (1986). Social foundations of thought and action: A social cognitive theory. Englewood Cliffs: Prentice-Hall.
Cronbach, L. J. (1970). Essentials of psychological testing (3rd ed.). New York, NY: Harper & Row.
IBM Security. (2023). IBM Security X-Force Threat Intelligence Index 2023. New York: IBM Corporation.
ISO/IEC 27001. (2022). Information security management systems — Requirements. Geneva: International Organization for Standardization.
Keepnet Labs. (2025). Top phishing statistics and trends you must know. Retrieved from https://keepnetlabs.com/blog/top-phishing-statistics-and-trends-you-must-know
Michie, S., van Stralen, M. M., & West, R. (2011). The behaviour change wheel: A new method for characterising and designing behaviour change interventions. Implementation Science, 6(42), 1–11.
Rogers, R. W. (1975). A protection motivation theory of fear appeals and attitude change. The Journal of Psychology, 91(1), 93–114.
Verizon. (2024). 2024 Data Breach Investigations Report. Retrieved from https://www.verizon.com/ business/resources/T646/reports/2024-dbir-data-breach-investigations-report.pdf
Whitman, M. E., & Mattord, H. J. (2022). Principles of information security (7th ed.). Boston: Cengage Learning.