More security, less harm?: exploring the link between security measures and direct costs of cyber incidents within firms using PLS-PM

As one of the first articles to empirically explore the direct costs of cyber incidents, our research provides novel and significant insights into the structural links between cyber incidents, exposure, and security within firms, as well as the related technical consequences. We employ an explorativ...

Descripción completa

Guardado en:  
Detalles Bibliográficos
Autor principal: Skarczinski, Bennet von (Autor)
Autor Corporativo: Internationale Tagung Wirtschaftsinformatik 17. 2022, Online (organimos emisor)
Otros Autores: Dreißigacker, Arne ; Teuteberg, Frank ; Internationale Tagung Wirtschaftsinformatik
Tipo de documento: Electrónico Libro
Lenguaje:Inglés
Publicado: [New York?] AIS Electronic Library (AISeL) 2022
En:Año: 2022
Acceso en línea: Volltext (kostenfrei)
Volltext (kostenfrei)
Volltext (kostenfrei)
Verificar disponibilidad: HBZ Gateway
Palabras clave:
Descripción
Sumario:As one of the first articles to empirically explore the direct costs of cyber incidents, our research provides novel and significant insights into the structural links between cyber incidents, exposure, and security within firms, as well as the related technical consequences. We employ an explorative approach, which is based on the causal information/cyber risk models proposed by Cohen et al. and Woods & Böhme, as well as PLS-modeling to analyze data from 493 firms that have incurred direct costs from their most severe cyber incident in the last 12 months. These data are part of a larger dataset, based on a representative and stratified random sample of 5,000 organizations that participated in a survey in 2018/19. Based on our model, we discuss the results and derive implications that are highly relevant to the alignment of IT (security) strategy and management. Furthermore, we identify gaps to be assessed in future research.
Notas:Literaturverzeichnis
Descripción Física:1 Online-Ressource Illustrationen
DOI:10.15496/publikation-83845