Strategic Aspects of Cyber Risk Information Sharing

Laube S, Böhme R

Forschungsartikel (Zeitschrift) | Peer reviewed

Zusammenfassung

Cyber risk management largely reduces to a race for information between defenders of ICT systems and attackers. Defenders can gain advantage in this race by sharing cyber risk information with each other. Yet, they often exchange less information than is socially desirable, because sharing decisions are guided by selfish rather than altruistic reasons. A growing line of research studies these strategic aspects that drive defenders’ sharing decisions. The present survey systematizes these works in a novel framework. It provides a consolidated understanding of defenders’ strategies to privately or publicly share information and enables us to distill trends in the literature and identify future research directions. We reveal that many theoretical works assume cyber risk information sharing to be beneficial, while empirical validations are often missing.

Details zur Publikation

FachzeitschriftACM Computing Surveys
Jahrgang / Bandnr. / Volume50
Ausgabe / Heftnr. / Issue5
StatusVeröffentlicht
Veröffentlichungsjahr2017
Sprache, in der die Publikation verfasst istEnglisch
DOI10.1145/3124398
Link zum Volltexthttps://dl.acm.org/citation.cfm?id=3124398
StichwörterSecurity information sharing; cyber risk management

Autor*innen der Universität Münster

Böhme, Rainer
Juniorprofessur für Wirtschaftsinformatik, insbesondere IT-Sicherheit (Prof. Böhme) (SECURITY)
Laube, Stefan
Juniorprofessur für Wirtschaftsinformatik, insbesondere IT-Sicherheit (Prof. Böhme) (SECURITY)