Cybersecurity investments in the supply chain: Coordination and a strategic attacker

被引:44
|
作者
Simon, Jay [1 ]
Omar, Ayman [1 ]
机构
[1] Amer Univ, Kogod Sch Business, 4400 Massachusetts Ave NW, Washington, DC 20016 USA
关键词
Supply chain management; Cybersecurity; Supply chain coordination; Attacker-defender model; Interdependent security; RESOURCE-ALLOCATION; SECURITY; DEFENSE; GAME; MANAGEMENT; TERRORIST; COMPLEX; IMPACT; FACE;
D O I
10.1016/j.ejor.2019.09.017
中图分类号
C93 [管理学];
学科分类号
12 ; 1201 ; 1202 ; 120202 ;
摘要
Cybersecurity poses a difficult challenge to supply chains, as a firm may be affected by an attack on another firm in the supply chain. For example, a retailer's consumer data might be compromised via an attack on a supplier. In general, individual nodes in a supply chain bear the entire cost of their own cybersecurity investments, but some of the benefits of the investments may be enjoyed by the other nodes as well. We analyze the differences between coordinated and uncoordinated cybersecurity investments, as well as the differences resulting from a strategic and a non-strategic attacker. We find that lack of coordination leads to underinvestment with a non-strategic attacker, but that this is somewhat counterbalanced by an attacker being strategic. Lack of coordination may lead to either underinvestment or overinvestment with a strategic attacker, depending on how large the indirect damages from attacks are relative to the direct damages; overinvestment is more likely if indirect damages are relatively minor. A numerical example is provided to illustrate the impacts of and relationships between coordinated investments and a strategic attacker. (C) 2019 Elsevier B.V. All rights reserved.
引用
收藏
页码:161 / 171
页数:11
相关论文
共 50 条
  • [1] Coordination of supply chain investments and the advantage of revenue sharing
    Christian Lohmann
    [J]. Zeitschrift für Betriebswirtschaft, 2010, 80 (9): : 969 - 990
  • [2] Coordination of co-investments in supply chain infrastructure
    Kogan, Konstantin
    Tapiero, Charles S.
    [J]. JOURNAL OF INTELLIGENT MANUFACTURING, 2012, 23 (06) : 2471 - 2475
  • [3] Coordination of co-investments in supply chain infrastructure
    Konstantin Kogan
    Charles S. Tapiero
    [J]. Journal of Intelligent Manufacturing, 2012, 23 : 2471 - 2475
  • [4] Study on the strategic coordination in construction supply chain
    Jang, Fangfang
    Wu, Yongxiang
    Jin, Li
    [J]. PROCEEDINGS OF 2007 INTERNATIONAL CONFERENCE ON CONSTRUCTION & REAL ESTATE MANAGEMENT, VOLS 1 AND 2, 2007, : 808 - 811
  • [5] Photovoltaic supply chain coordination with strategic consumers in China
    Chen, Zhisong
    Su, Shong-Iee Ivan
    [J]. RENEWABLE ENERGY, 2014, 68 : 236 - 244
  • [6] Supply chain cybersecurity investments with interdependent risks under different information exchange modes
    Xu, Lu
    Li, Yanhui
    Lin, Yanwei
    Tang, Chaofeng
    Yao, Qi
    [J]. INTERNATIONAL JOURNAL OF PRODUCTION RESEARCH, 2024, 62 (06) : 2034 - 2059
  • [7] A supply chain network game theory model of cybersecurity investments with nonlinear budget constraints
    Anna Nagurney
    Patrizia Daniele
    Shivani Shukla
    [J]. Annals of Operations Research, 2017, 248 : 405 - 427
  • [8] A supply chain network game theory model of cybersecurity investments with nonlinear budget constraints
    Nagurney, Anna
    Daniele, Patrizia
    Shukla, Shivani
    [J]. ANNALS OF OPERATIONS RESEARCH, 2017, 248 (1-2) : 405 - 427
  • [9] Supply Chain Coordination Facing Boundedly Rational Strategic Customers
    Song, Jia
    Zhang, Juliang
    Cheng, T. C. Edwin
    [J]. IEEE TRANSACTIONS ON ENGINEERING MANAGEMENT, 2024, 71 : 3688 - 3699
  • [10] Supply Chain Coordination in the Presence of Gray Markets and Strategic Consumers
    Ahmadi, Reza
    Iravani, Foad
    Mamani, Hamed
    [J]. PRODUCTION AND OPERATIONS MANAGEMENT, 2017, 26 (02) : 252 - 272