The cyber-resilience of financial institutions: significance and applicability

被引:29
|
作者
Dupont, Benoit [1 ]
机构
[1] Univ Montreal, Int Ctr Comparat Criminol, Criminol, Montreal, PQ, Canada
来源
JOURNAL OF CYBERSECURITY | 2019年 / 5卷 / 01期
关键词
cyber-resilience; risk management; regulation; standardization; marketing; cyberattacks; CYBERSECURITY; IMPROVISATION; CONTEXT; STARTLE; JAZZ;
D O I
10.1093/cybsec/tyz013
中图分类号
C [社会科学总论];
学科分类号
03 ; 0303 ;
摘要
The growing sophistication, frequency and severity of cyberattacks targeting financial sector institutions highlight their inevitability and the impossibility of completely protecting the integrity of critical computer systems. In this context, cyber-resilience offers an attractive complementary alternative to the existing cybersecurity paradigm. Cyber-resilience is defined in this article as the capacity to withstand, recover from and adapt to the external shocks caused by cyber risks. Resilience has a long and rich history in a number of scientific disciplines, including in engineering and disaster management. One of its main benefits is that it enables complex organizations to prepare for adverse events and to keep operating under very challenging circumstances. This article seeks to explore the significance of this concept and its applicability to the online security of financial institutions. The first section examines the need for cyber-resilience in the financial sector, highlighting the different types of threats that target financial systems and the various measures of their adverse impact. This section concludes that the "prevent and protect" paradigm that has prevailed so far is inadequate, and that a cyber-resilience orientation should be added to the risk managers' toolbox. The second section briefly traces the scientific history of the concept and outlines the five core dimensions of organizational resilience, which is dynamic, networked, practiced, adaptive, and contested. Finally, the third section analyses three types of institutional approaches that are used to foster cyber-resilience in the financial sector (and beyond): (i) a thriving cybersecurity industry is promoting cyber-resilience as the future of security; (ii) standards bodies are embedding cyber-resilience into some of their cybersecurity standards; and (iii) regulatory agencies have developed a broad range of compliance tools aimed at enhancing cyber-resilience.
引用
收藏
页数:17
相关论文
共 50 条
  • [1] Cyber-resilience in the EU
    Kaufmann, Mareile
    [J]. INTERNASJONAL POLITIKK, 2013, 71 (02) : 274 - 283
  • [2] Program Synthesis for Cyber-Resilience
    Catano, Nestor
    [J]. IEEE TRANSACTIONS ON SOFTWARE ENGINEERING, 2023, 49 (03) : 962 - 972
  • [3] Challenges in Maritime Cyber-Resilience
    Jensen, Lars
    [J]. TECHNOLOGY INNOVATION MANAGEMENT REVIEW, 2015, : 35 - 39
  • [4] CYBER-RESILIENCE, RISKS AND RAMIFICATIONS
    Morrison, Gordon
    [J]. JOURNAL OF THE INSTITUTE OF TELECOMMUNICATIONS PROFESSIONALS, 2013, 7 : 18 - 21
  • [5] Building cyber-resilience to tackle threats
    De Crespigny, Michael
    [J]. Network Security, 2012, 2012 (04) : 5 - 8
  • [6] Cyber-Resilience Evaluation of Cyber-Physical Systems
    Segovia, Mariana
    Rubio-Hernan, Jose
    Cavalli, Ana R.
    Garcia-Alfaro, Joaquin
    [J]. 2020 IEEE 19TH INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS (NCA), 2020,
  • [7] Editorial: Cyber-Resilience in Supply Chains
    McPhee, Chris
    Khan, Omera
    [J]. TECHNOLOGY INNOVATION MANAGEMENT REVIEW, 2015, : 3 - 5
  • [8] Building Cyber-Resilience into Supply Chains
    Davis, Adrian
    [J]. TECHNOLOGY INNOVATION MANAGEMENT REVIEW, 2015, : 19 - 27
  • [9] A Survey on Cyber-Resilience Approaches for Cyber-Physical Systems
    Segovia-Ferreira, Mariana
    Rubio-Hernan, Jose
    Cavalli, Ana Rosa
    Garcia-Alfaro, Joaquin
    [J]. ACM COMPUTING SURVEYS, 2024, 56 (08)
  • [10] The tensions of cyber-resilience: From sensemaking to practice
    Dupont, Benoit
    Shearing, Clifford
    Bernier, Marilyne
    Leukfeldt, Rutger
    [J]. COMPUTERS & SECURITY, 2023, 132