Integration of Information Systems and Cybersecurity Countermeasures: An Exposure to Risk Perspective

被引:0
|
作者
Baskerville, Richard [1 ,2 ]
Rowe, Frantz [3 ,4 ]
Wolff, Francois-Charles [5 ]
机构
[1] Georgia State Univ, Informat Syst, Atlanta, GA 30303 USA
[2] Curtin Univ, Sch Informat Syst, Perth, WA, Australia
[3] Univ Nantes, Informat Syst, Nantes, France
[4] SKEMA Business Sch, Lille, France
[5] Univ Nantes, Econ, Nantes, France
来源
关键词
Cybersecurity Countermeasures; Internal Integration; External Integration; Internal Dynamism; Exposure to Risk; French Firms; DOSE-RESPONSE FUNCTION; SECURITY; MODEL; TRANSFORMATION; TECHNOLOGY; MANAGEMENT; AWARENESS; BALANCE; IMPACT; SMES;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This paper investigates the relationship between Information Systems (IS) integration and the use of cybersecurity countermeasures using an adapted exposure to risk perspective which considers both the probability of a risk through vulnerability points theory and the impact of the risk if it occurs. Based on an econometric analysis of a survey sample of 9,721 French firms, the study finds that higher degrees of system integration entail higher degrees of cybersecurity usage. Whereas previously it was thought that systems integration reduces the number of vulnerabilities and thus the need for cybersecurity countermeasures, we find that the more the system is integrated, the greater the use of self-protective cybersecurity countermeasures. We theorize that this finding comes from the elimination of many uncontrollable vulnerabilities and the presence of fewer, but controllable, vulnerability points. This finding holds both for internal and external integration but is stronger in the latter case. Moreover, results show that internal dynamism is positively correlated with cybersecurity countermeasures. Our reasoning applies to cybersecurity in terms of self-protective security measures but not necessarily to risk-transfer security measures.
引用
收藏
页码:33 / 52
页数:20
相关论文
共 50 条
  • [1] Organizational systems integration: Management information systems perspective
    Bajgoric, N
    [J]. CONCURRENT ENGINEERING-RESEARCH AND APPLICATIONS, 1997, 5 (02): : 113 - 121
  • [2] Classification of Cybersecurity Threats, Vulnerabilities and Countermeasures in Database Systems
    Almaiah, Mohammed Amin
    Saqr, Leen Mohammad
    Al-Rawwash, Leen Ahmad
    Altellawi, Layan Ahmed
    Al-Ali, Romel
    Almomani, Omar
    [J]. Computers, Materials and Continua, 2024, 81 (02): : 3189 - 3220
  • [3] Cybersecurity of freight information systems
    Anon
    [J]. 2003, National Research Council
  • [4] Countermeasures and their taxonomies for risk treatment in cybersecurity: A systematic mapping review
    Sanchez-Garcia, Isaac D.
    San Feliu Gilabert, Tomas
    Calvo-Manzano, Jose A.
    [J]. COMPUTERS & SECURITY, 2023, 128
  • [5] Critical Aviation Information Systems Cybersecurity
    Gnatyuk, Sergiy
    [J]. MEETING SECURITY CHALLENGES THROUGH DATA ANALYTICS AND DECISION SUPPORT, 2016, 47 : 308 - 316
  • [6] Cybersecurity Providing in Information and Telecommunication Systems
    [J]. CEUR Workshop Proceedings, 2024, 3654
  • [7] A Cybersecurity Ontology to Support Risk Information Gathering in Cyber-Physical Systems
    Grigoriadis, Christos
    Berzovitis, Adamantios Marios
    Stellios, Ioannis
    Kotzanikolaou, Panayiotis
    [J]. COMPUTER SECURITY: ESORICS 2021 INTERNATIONAL WORKSHOPS, 2022, 13106 : 23 - 39
  • [8] A PERSPECTIVE ON INFORMATION INTEGRATION
    CONLEY, ST
    [J]. JOURNAL OF MICROGRAPHICS, 1981, 14 (08): : 29 - 32
  • [9] Toward a Political Perspective of Integration in Information Systems Research: The Case of Health Information Systems in India
    Sahay, Sundeep
    Monteiro, Eric
    Aanestad, Margunn
    [J]. INFORMATION TECHNOLOGY FOR DEVELOPMENT, 2009, 15 (02) : 83 - 94
  • [10] Specifying information systems for business process integration – A management perspective*
    Joerg Becker
    Alexander Dreiling
    Roland Holten
    Michael Ribbert
    [J]. Information Systems and e-Business Management, 2003, 1 (3) : 231 - 263