Optimal Cyber-Insurance Contract Design for Dynamic Risk Management and Mitigation

被引:3
作者
Zhang, Rui [1 ]
Zhu, Quanyan [1 ]
机构
[1] NYU, Dept Elect & Comp Engn, Brooklyn, NY 11201 USA
基金
美国国家科学基金会;
关键词
Insurance; Contracts; Computer crime; Hazards; Ethics; Viruses (medical); Stationary state; Cyber insurance; information asymmetry; Markov decision processes (MDPs); mechanism design; moral hazard; principal-agent problem; MORAL HAZARD; SECURITY; MODEL;
D O I
10.1109/TCSS.2021.3117905
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
With the recent growing number of cyberattacks and the constant lack of effective defense methods, cyber risks have become ubiquitous in enterprise networks, manufacturing plants, and government computer systems. Cyber insurance provides a valuable approach to transfer the cyber risks to insurance companies and further improve the security status of the insured. The designation of effective cyber-insurance contracts requires considerations from both the insurance market and the dynamic properties of the cyber risks. To capture the interactions between the users and the insurers, we present a dynamic moral-hazard type of principal-agent model incorporated with Markov decision processes, which are used to capture the dynamics and correlations of the cyber risks as well as the user's decisions on the protections. We study and fully analyze a case with a two-state two-action user under linear coverage insurance and further show the risk compensation, Peltzman effect, linear insurance contract principle, and zero-operating profit principle in this case. Numerical experiments are provided to verify our conclusions and further extend to cases of a four-state three-action user under linear coverage insurance and threshold coverage insurance.
引用
收藏
页码:1087 / 1100
页数:14
相关论文
共 45 条
[31]   Optimal Risk Management in Critical Infrastructures against Cyber-Adversaries [J].
Barreto, Carlos ;
Cardenas, Alvaro A. .
2017 IEEE CONFERENCE ON CONTROL TECHNOLOGY AND APPLICATIONS (CCTA 2017), 2017, :2027-2032
[32]   Research on Power Supply and Demand Side Risk Management Options Analyses on the Interruptible Load and Risk Insurance Contract [J].
Fang, Jun ;
Wang, Haifeng .
2008 4TH INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, NETWORKING AND MOBILE COMPUTING, VOLS 1-31, 2008, :10328-10332
[33]   Design of Next-Generation Cyber-Physical Energy Management Systems: Monitoring to Mitigation [J].
Sahu, Abhijeet ;
Davis, Katherine ;
Huang, Hao ;
Umunnakwe, Amarachi ;
Zonouz, Saman ;
Goulart, Ana .
IEEE OPEN ACCESS JOURNAL OF POWER AND ENERGY, 2023, 10 :151-163
[34]   Agent’s Optimal Compensation Under Inflation Risk by Using Dynamic Contract Model [J].
Chen Fei ;
Weiyin Fei ;
Fanhong Zhang ;
Xiaoguang Yang .
Journal of Systems Science and Complexity, 2021, 34 :2291-2309
[35]   Agent's Optimal Compensation Under Inflation Risk by Using Dynamic Contract Model [J].
Fei Chen ;
Fei Weiyin ;
Zhang Fanhong ;
Yang Xiaoguang .
JOURNAL OF SYSTEMS SCIENCE & COMPLEXITY, 2021, 34 (06) :2291-2309
[36]   Sarima-Based Cyber-Risk Assessment and Mitigation Model for A Smart City's Traffic Management Systems (Scram) [J].
Sharma, Kalpit ;
Mukhopadhyay, Arunabha .
JOURNAL OF ORGANIZATIONAL COMPUTING AND ELECTRONIC COMMERCE, 2022, 32 (01) :1-20
[37]   Contract design of direct-load control programs and their optimal management by genetic algorithm [J].
Lujano-Rojas, Juan M. ;
Zubi, Ghassan ;
Dufo-Lopez, Rodolfo ;
Bernal-Agustin, Jose L. ;
Garcia-Paricio, Eduardo ;
Cataldo, Joao P. S. .
ENERGY, 2019, 186
[38]   C-R-P-M-I: A Framework to Model Cyber-Risk from Phishing and Mitigation through Cyber Insurance Emergent Research Forum (ERF) [J].
Mukhopadhyay, Arunabha ;
Biswas, Baidyanath ;
Pal, Shounak .
AMCIS 2018 PROCEEDINGS, 2018,
[39]   Revisiting the optimal insurance design under adverse selection: Distortion risk measures and tail-risk overestimation [J].
Liang, Zhihang ;
Zou, Jushen ;
Jiang, Wenjun .
INSURANCE MATHEMATICS & ECONOMICS, 2022, 104 :200-221
[40]   Optimal decision of dynamic wealth allocation with life insurance for mitigating health risk under market incompleteness [J].
Chen, Chang-Chih ;
Chang, Chia-Chien ;
Sun, Edward W. ;
Yu, Min-Teh .
EUROPEAN JOURNAL OF OPERATIONAL RESEARCH, 2022, 300 (02) :727-742