Cybersecurity investments in supply chains with two-stage risk propagation

被引:0
|
作者
Dash, Aishwarya [1 ]
Sarmah, S. P. [1 ]
Tiwari, M. K. [1 ]
Jena, Sarat Kumar [2 ]
Glock, Christoph H. [3 ]
机构
[1] Indian Inst Technol Kharagpur, Ind & Syst Engn, Kharagpur, West Bengal, India
[2] XIM Univ, Xavier Inst Management, Operat Management, Bhubaneswar, India
[3] Tech Univ Darmstadt, Inst Prod & Supply Chain Management, Darmstadt, Germany
关键词
Supply chain management; Cyber-attacks; Cybersecurity investment; Cybersecurity insurance; Indirect risk propagation; Direct and indirect attacks; INFORMATION SECURITY INVESTMENT; GAME; IMPACT; INTERDEPENDENCY;
D O I
10.1016/j.cie.2024.110519
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Cyber-attacks present a significant threat to supply chains as their nodes are directly or indirectly vulnerable to risk propagation at various stages. The risk level varies depending on the type of attack. A cybersecurity insurance offers a practical method to mitigate this risk, and it is crucial to determine optimal cybersecurity investments for all supply chain nodes. Previous studies have overlooked the joint impact of the attack type, two- stage risk propagation, and cybersecurity insurance in optimizing cybersecurity investments. This paper addresses this research gap by examining optimal investments under targeted and opportunistic attacks in a two- stage supply chain using game theory. The findings indicate that optimal investments differ based on the type of attack. For instance, retailers should invest more in cybersecurity under opportunistic attacks, while suppliers need to spend more under targeted attacks. Additionally, the results show that under opportunistic attacks, members should reduce their investments. Conversely, under targeted attacks, investments should initially increase and then stabilize. In the case of opportunistic attacks, suppliers and retailers should prioritize reconfiguring their systems over investing heavily in cybersecurity. The model presented in this paper demonstrates that not all cyber risks are worth defending against and that cybersecurity insurance for the entire supply chain can be more cost-effective than addressing cybersecurity risks individually. The paper also explores the impact of joint decisions on cybersecurity insurance when firms are unwilling to invest individually. The insights obtained enable supply chains to identify their optimal cybersecurity investment strategies effectively.
引用
收藏
页数:19
相关论文
共 50 条
  • [21] Delivery time quotation and pricing in two-stage supply chains: Centralized decision-making with global and local managerial approaches
    Hammami, Ramzi
    Frein, Yannick
    Albana, Abduh S.
    EUROPEAN JOURNAL OF OPERATIONAL RESEARCH, 2020, 286 (01) : 164 - 177
  • [22] Improving delivery performance for asymmetric Laplace distributed delivery time in a two-stage supply chain
    Bushuev, Maxim A.
    Brown, Jay R.
    Rudchenko, Tatiana
    INTERNATIONAL JOURNAL OF PRODUCTION RESEARCH, 2018, 56 (15) : 5172 - 5187
  • [23] Analysis of a two-stage telecommunication supply chain with technology dependent demand
    Canakoglu, Ethem
    Bilgic, Taner
    EUROPEAN JOURNAL OF OPERATIONAL RESEARCH, 2007, 177 (02) : 995 - 1012
  • [24] Modeling a two-stage supply contract problem in a hybrid uncertain environment
    Li, Wenfei
    Liu, Yankui
    Chen, Yanju
    COMPUTERS & INDUSTRIAL ENGINEERING, 2018, 123 : 289 - 302
  • [25] Price promotions, operations cost, and profit in a two-stage supply chain
    Su, Yiqiang
    Geunes, Joseph
    OMEGA-INTERNATIONAL JOURNAL OF MANAGEMENT SCIENCE, 2012, 40 (06): : 891 - 905
  • [26] Blood supply chain: a two-stage approach for tactical and operational planning
    Ana Margarida Araújo
    Daniel Santos
    Inês Marques
    Ana Barbosa-Povoa
    OR Spectrum, 2020, 42 : 1023 - 1053
  • [27] Blood supply chain: a two-stage approach for tactical and operational planning
    Araujo, Ana Margarida
    Santos, Daniel
    Marques, Ines
    Barbosa-Povoa, Ana
    OR SPECTRUM, 2020, 42 (04) : 1023 - 1053
  • [28] Estimating Supply Functions for Wine Attributes: A Two-Stage Hedonic Approach
    Oczkowski, Edward
    JOURNAL OF WINE ECONOMICS, 2022, 17 (01) : 1 - 26
  • [29] Exploring synergetic effects between investments in environmental and quality/lean practices in supply chains
    Wiengarten, Frank
    Eynes, Brian
    Onofrei, George
    SUPPLY CHAIN MANAGEMENT-AN INTERNATIONAL JOURNAL, 2013, 18 (02) : 148 - 160
  • [30] Simultaneous coordination of order quantity and reorder point in a two-stage supply chain
    Chaharsooghi, S. Kamal
    Heydari, Jafar
    Kamalabadi, Isa Nakhai
    COMPUTERS & OPERATIONS RESEARCH, 2011, 38 (12) : 1667 - 1677