TY - JOUR
T1 - A conceptual model and IS framework for the design and adoption of environmental compliance management systems
T2 - For special issue on governance, risk and compliance in IS
AU - Butler, Tom
AU - McGovern, Damien
PY - 2012/4
Y1 - 2012/4
N2 - Environmental concerns have led to a significant increase in the number and scope of compliance imperatives governing electrical, electronics, and IT products across global regulatory environments. This is, of course, in addition to general compliance and risk issues generated by the Sarbanes-Oxley Act, data protection and information privacy legislation, ethics and integrity regulations, IT governance concerns, and so on. While the latter dimensions of enterprise-wide governance, compliance, and risk (GRC) are far from straightforward, the complexity and geographical diversity of environment-based regulatory sources cause considerable problems for organisations in the electrical, electronics and IT sectors. Although a variety of enterprise-level information systems are presently available to help manage compliance and reduce risk across all areas, a majority of firms still employ ad-hoc solutions. This paper focuses on the very-much underexplored issue of environmental compliance and risk. The first objective of this exploratory study is to delineate the problems facing GRC and Environmental Health and Safety (EH&S) functions in dealing with environmental regulations globally and to identify how these problems are being solved using Environmental Compliance Management Systems (ECMS). The second objective is to propose a processbased conceptual model and related IS framework on the design and adoption of ECMS that will inform future research and, it is hoped, the IS adoption decisions of GRC and EH&S practitioners.
AB - Environmental concerns have led to a significant increase in the number and scope of compliance imperatives governing electrical, electronics, and IT products across global regulatory environments. This is, of course, in addition to general compliance and risk issues generated by the Sarbanes-Oxley Act, data protection and information privacy legislation, ethics and integrity regulations, IT governance concerns, and so on. While the latter dimensions of enterprise-wide governance, compliance, and risk (GRC) are far from straightforward, the complexity and geographical diversity of environment-based regulatory sources cause considerable problems for organisations in the electrical, electronics and IT sectors. Although a variety of enterprise-level information systems are presently available to help manage compliance and reduce risk across all areas, a majority of firms still employ ad-hoc solutions. This paper focuses on the very-much underexplored issue of environmental compliance and risk. The first objective of this exploratory study is to delineate the problems facing GRC and Environmental Health and Safety (EH&S) functions in dealing with environmental regulations globally and to identify how these problems are being solved using Environmental Compliance Management Systems (ECMS). The second objective is to propose a processbased conceptual model and related IS framework on the design and adoption of ECMS that will inform future research and, it is hoped, the IS adoption decisions of GRC and EH&S practitioners.
KW - Enterprise systems
KW - Environment
KW - Environmental compliance management systems
KW - Governance
KW - IS framework
KW - IT
KW - Risk and compliance
UR - https://www.scopus.com/pages/publications/84861454717
U2 - 10.1007/s10796-009-9197-5
DO - 10.1007/s10796-009-9197-5
M3 - Article
AN - SCOPUS:84861454717
SN - 1387-3326
VL - 14
SP - 221
EP - 235
JO - Information Systems Frontiers
JF - Information Systems Frontiers
IS - 2
ER -