Cyber Supply Chain Risk Management: Toward an Understanding of the Antecedents to Demand for Assurance

被引:3
|
作者
Hampton, Clark [1 ]
Sutton, Steve G. [2 ,3 ]
Arnold, Vicky [2 ,3 ]
Khazanchi, Deepak [4 ]
机构
[1] Univ South Carolina, Darla Moore Sch Business, Sch Accounting, Columbia, SC 29208 USA
[2] Norwegian Sch Econ, Dept Accounting Auditing & Law, Bergen, Norway
[3] Univ Cent Florida, Coll Business, Kenneth G Dixon Sch Accounting, Orlando, FL 32816 USA
[4] Univ Nebraska Omaha, Coll Informat Sci & Technol, Omaha, NE USA
关键词
cyber risk management; supply chain risk management; cyber supply chain risk management; cyber assurance; voluntary assurance; SOC reports; SUSTAINABLE COMPETITIVE ADVANTAGE; INTERORGANIZATIONAL RELATIONSHIPS; E-COMMERCE; TRUST; SYSTEMS; IDENTIFICATION; COMMITMENT; INDICATORS; NETWORK; JUSTICE;
D O I
10.2308/ISYS-19-050
中图分类号
F8 [财政、金融];
学科分类号
0202 ;
摘要
Recognizing the need for effective cyber risk management processes across the supply chain, the AICPA issued a new SOC in March 2020 for assuring cyber supply chain risk management (C-SCRM) processes. This study examines supply chain relationship factors and cyber risk issues to better understand the demand for C-SCRM assurance. Resource-Advantage Theory of Competition provides the conceptual foundation for assessing the dual drivers of relationship building and cyber risk management on demand for assurance. We use a field survey to collect data from 205 professionals enabling evaluation of the complex relationships in the theoretical model. Results support all hypotheses, provide satisfactory model fit, and support the underlying theory. Trust and cyber supply chain risk both positively influence demand for assurance over C-SCRM processes. This study expands the literature on cyber assurance by auditors and elaborates on overall supply chain processes that help drive value from auditors providing such assurance.
引用
收藏
页码:37 / 60
页数:24
相关论文
共 50 条
  • [1] Cyber risk management strategies and integration: toward supply chain cyber resilience and robustness
    Jazairy, Amer
    Brho, Mazen
    Manuj, Ila
    Goldsby, Thomas J.
    [J]. INTERNATIONAL JOURNAL OF PHYSICAL DISTRIBUTION & LOGISTICS MANAGEMENT, 2024, 54 (11) : 1 - 29
  • [2] Antecedents of proactive supply chain risk management a contingency theory perspective
    Groetsch, Volker M.
    Blome, Constantin
    Schleper, Martin C.
    [J]. INTERNATIONAL JOURNAL OF PRODUCTION RESEARCH, 2013, 51 (10) : 2842 - 2867
  • [3] Interplay between cyber supply chain risk management practices and cyber security performance
    Gani, Anisha Banu Dawood
    Fernando, Yudi
    Lan, Shulin
    Lim, Ming K.
    Tseng, Ming-Lang
    [J]. INDUSTRIAL MANAGEMENT & DATA SYSTEMS, 2023, 123 (03) : 843 - 861
  • [4] Supply Chain Management In Demand
    [J]. Am Text Int, 4 (44):
  • [5] Antecedents for the adoption and execution of supply chain management
    Kotzab, Herbert
    Teller, Christoph
    Grant, David B.
    Sparks, Leigh
    [J]. SUPPLY CHAIN MANAGEMENT-AN INTERNATIONAL JOURNAL, 2011, 16 (04) : 231 - 245
  • [6] An information processing perspective on supply chain risk management: Antecedents, mechanism, and consequences
    Fan, Huan
    Li, Gang
    Sun, Hongyi
    Cheng, T. C. E.
    [J]. INTERNATIONAL JOURNAL OF PRODUCTION ECONOMICS, 2017, 185 : 63 - 75
  • [7] Sharing demand and supply risk in a supply chain
    Xia, Yusen
    Ramachandran, Karthik
    Gurnani, Haresh
    [J]. IIE TRANSACTIONS, 2011, 43 (06) : 451 - 469
  • [8] Reinforcing systems assurance in cyber risk management
    Schaeffer, Gregory
    [J]. CrossTalk, 2010, 23 (3-4):
  • [9] Cyber supply chain risk management: Revolutionizing the strategic control of critical IT systems
    Boyson, Sandor
    [J]. TECHNOVATION, 2014, 34 (07) : 342 - 353
  • [10] Objectives for managing cyber supply chain risk
    Windelberg, Marjorie
    [J]. INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2016, 12 : 4 - 11