Optimal Cyber-Insurance Contract Design for Dynamic Risk Management and Mitigation

被引:2
|
作者
Zhang, Rui [1 ]
Zhu, Quanyan [1 ]
机构
[1] NYU, Dept Elect & Comp Engn, Brooklyn, NY 11201 USA
来源
IEEE TRANSACTIONS ON COMPUTATIONAL SOCIAL SYSTEMS | 2022年 / 9卷 / 04期
基金
美国国家科学基金会;
关键词
Insurance; Contracts; Computer crime; Hazards; Ethics; Viruses (medical); Stationary state; Cyber insurance; information asymmetry; Markov decision processes (MDPs); mechanism design; moral hazard; principal-agent problem; MORAL HAZARD; SECURITY; MODEL;
D O I
10.1109/TCSS.2021.3117905
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
With the recent growing number of cyberattacks and the constant lack of effective defense methods, cyber risks have become ubiquitous in enterprise networks, manufacturing plants, and government computer systems. Cyber insurance provides a valuable approach to transfer the cyber risks to insurance companies and further improve the security status of the insured. The designation of effective cyber-insurance contracts requires considerations from both the insurance market and the dynamic properties of the cyber risks. To capture the interactions between the users and the insurers, we present a dynamic moral-hazard type of principal-agent model incorporated with Markov decision processes, which are used to capture the dynamics and correlations of the cyber risks as well as the user's decisions on the protections. We study and fully analyze a case with a two-state two-action user under linear coverage insurance and further show the risk compensation, Peltzman effect, linear insurance contract principle, and zero-operating profit principle in this case. Numerical experiments are provided to verify our conclusions and further extend to cases of a four-state three-action user under linear coverage insurance and threshold coverage insurance.
引用
收藏
页码:1087 / 1100
页数:14
相关论文
共 45 条
  • [1] Optimal model design for the cyber-insurance contract with asymmetric information
    Yang, Yunxue
    Yang, Qin
    Yang, Zhenqi
    Xue, Shengjun
    2019 INTERNATIONAL CONFERENCE ON INTERNET OF THINGS (ITHINGS) AND IEEE GREEN COMPUTING AND COMMUNICATIONS (GREENCOM) AND IEEE CYBER, PHYSICAL AND SOCIAL COMPUTING (CPSCOM) AND IEEE SMART DATA (SMARTDATA), 2019, : 513 - 518
  • [2] Risk mitigation services in cyber insurance: optimal contract design and price structure
    Zeller, Gabriela
    Scherer, Matthias
    GENEVA PAPERS ON RISK AND INSURANCE-ISSUES AND PRACTICE, 2023, 48 (02) : 502 - 547
  • [3] An insurance theory based optimal cyber-insurance contract against moral hazard
    Dou, Wanchun
    Tang, Wenda
    Wu, Xiaotong
    Qi, Lianyong
    Xu, Xiaolong
    Zhang, Xuyun
    Hu, Chunhua
    INFORMATION SCIENCES, 2020, 527 : 576 - 589
  • [4] Risk mitigation services in cyber insurance: optimal contract design and price structure
    Gabriela Zeller
    Matthias Scherer
    The Geneva Papers on Risk and Insurance - Issues and Practice, 2023, 48 : 502 - 547
  • [5] A Coalitional Cyber-Insurance Design Considering Power System Reliability and Cyber Vulnerability
    Lau, Pikkin
    Wang, Lingfeng
    Liu, Zhaoxi
    Wei, Wei
    Ten, Chee-Wooi
    IEEE TRANSACTIONS ON POWER SYSTEMS, 2021, 36 (06) : 5512 - 5524
  • [6] Cyber Risk Management with Risk Aware Cyber-insurance in Blockchain Networks
    Feng, Shaohan
    Xiong, Zehui
    Niyato, Dusit
    Wang, Ping
    Wang, Shaun Shuxun
    Zhang, Yang
    2018 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2018,
  • [7] Risk Management Using Cyber-Threat Information Sharing and Cyber-Insurance
    Tosh, Deepak K.
    Shetty, Sachin
    Sengupta, Shamik
    Kesan, Jay P.
    Kamhoua, Charles A.
    GAME THEORY FOR NETWORKS (GAMENETS 2017), 2017, 212 : 154 - 164
  • [8] The barriers to sustainable risk transfer in the cyber-insurance market
    Skeoch, Henry R. K.
    Ioannidis, Christos
    JOURNAL OF CYBERSECURITY, 2024, 10 (01):
  • [9] Improving the Efficiency of Blockchain Applications with Smart Contract based Cyber-insurance
    Xu, Jia
    Wu, Yongqi
    Luo, Xiapu
    Yang, Dejun
    ICC 2020 - 2020 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2020,
  • [10] FlipIn: A Game-Theoretic Cyber Insurance Framework for Incentive-Compatible Cyber Risk Management of Internet of Things
    Zhang, Rui
    Zhu, Quanyan
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2020, 15 : 2026 - 2041