Optimal Cyber Security Investment in a Mixed Risk Management Framework: Examining the Role of Cyber Insurance and Expenditure Analysis

被引:1
作者
Mazzoccoli, Alessandro [1 ]
机构
[1] Roma Tre Univ, Dept Econ, Via Silvio DAmico 77, I-00146 Rome, Italy
关键词
cyber insurance; breach probability function; cyber security; risk management; MODEL; MARKET; COSTS;
D O I
10.3390/risks11090154
中图分类号
F8 [财政、金融];
学科分类号
0202 ;
摘要
Cyber security importance has escalated globally, driven by its pivotal role in shaping daily life, encompassing both personal and non-personal aspects. Cyber security breach probability functions play a crucial role in comprehending how cyber security investments affect vulnerability to cyber attacks. These functions employ mathematical models to guide decision making in cyber risk management. Thus, studying and improving them is useful in this context. In particular, using these models, this article explores the effectiveness of an integrated risk management strategy that merges insurance and security investments, aiming to minimize overall security expenses. Within this strategy, security investments contribute to reducing the insurance premium. This research investigates the optimal investment for this blended approach under total insurance coverage. When the integrated risk management strategy combining insurance and security investments is deemed the optimal choice, this paper reveals that the insurance premium tends to be the dominant component in the overall security expense in the majority of cases. This implies that the cost of insurance outweighs the cost of security investments.
引用
收藏
页数:14
相关论文
共 50 条
[41]   Methodology for risk management related to cyber-security of Unmanned Aircraft Systems [J].
Tran, Trung Duc ;
Thiriet, Jean-Marc ;
Marchand, Nicolas ;
El Mrabti, Amin ;
Luculli, Gabriele .
2019 24TH IEEE INTERNATIONAL CONFERENCE ON EMERGING TECHNOLOGIES AND FACTORY AUTOMATION (ETFA), 2019, :695-702
[42]   Optimal Security Investment Problem for Secure State Estimation on Cyber-Physical Systems [J].
Shinohara, Takumi ;
Namerikawa, Toru .
IEEE TRANSACTIONS ON AUTOMATIC CONTROL, 2025, 70 (02) :1244-1251
[43]   Cascading information on best practice: Cyber security risk management in UK micro and small businesses and the role of IT companies [J].
Cartwright, Anna ;
Cartwright, Edward ;
Edun, Esther Solomon .
COMPUTERS & SECURITY, 2023, 131
[44]   Risk mitigation services in cyber insurance: optimal contract design and price structure [J].
Zeller, Gabriela ;
Scherer, Matthias .
GENEVA PAPERS ON RISK AND INSURANCE-ISSUES AND PRACTICE, 2023, 48 (02) :502-547
[45]   Risk mitigation services in cyber insurance: optimal contract design and price structure [J].
Gabriela Zeller ;
Matthias Scherer .
The Geneva Papers on Risk and Insurance - Issues and Practice, 2023, 48 :502-547
[46]   Cyber risk management in the US banking and insurance industry: A textual and empirical analysis of determinants and value [J].
Gatzert, Nadine ;
Schubert, Madeline .
JOURNAL OF RISK AND INSURANCE, 2022, 89 (03) :725-763
[47]   Cyber Security Risk Analysis and Evaluation for Intelligent Vehicle Gateway [J].
Zhao, Hao ;
Guo, Jiansheng ;
Wu, Zhi ;
Liu, Tianyu .
INTERNATIONAL CONFERENCE ON SMART TRANSPORTATION AND CITY ENGINEERING 2021, 2021, 12050
[48]   The effect of environmental turbulence on cyber security risk management and organizational resilience [J].
Durst, Susanne ;
Hinteregger, Christoph ;
Zieba, Malgorzata .
COMPUTERS & SECURITY, 2024, 137
[49]   An adaptive analysis framework for correlating cyber-security-related data [J].
Jin, Xiaohui ;
Cui, Baojing ;
Yang, Jun ;
Cheng, Zishuai .
PROCEEDINGS 2018 IEEE 32ND INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS (AINA), 2018, :915-919
[50]   A Blockchain-based Security Management Framework for Cyber-Physical Systems [J].
Das, Debashis ;
Banerjee, Sourav ;
Chakraborty, Rakhi ;
Dasgupta, Kousik ;
Chatterjee, Pushpita ;
Ghosh, Uttam .
2023 IEEE/ACM 23RD INTERNATIONAL SYMPOSIUM ON CLUSTER, CLOUD AND INTERNET COMPUTING WORKSHOPS, CCGRIDW, 2023, :39-44