Vulnerability and information security investment: An empirical analysis of e-local government in Japan
Journal of Accounting and Public PolicyPublished 1 January 2005
Hideyuki Tanaka, K. Matsuura, Osamu Sudoh
Citations98
SJR quartileQ1
SJR score1.08
SNIP1.60
Generate an AI Snapshot to get a quick, structured summary of this paper.
Study Snapshot
ObjectiveStudy objective
MethodsResearch methodology
PopulationPopulation studied
Sample sizeSample sizes
OutcomesStudy outcomes here
ResultsStudy results comes here
LimitationsResearch study limitations comes here
A concise AI-generated summary of the paper will appear here once you click Generate AI Snapshot.
TL;DR
The results suggest that the decisions an economic entity makes concerning information security investment depend on vulnerability, and lends empirical support to prior economic research.
Abstract
The authors aim to verify the relation between vulnerability and information security investment. This relation is empirically analyzed using data on e-local governments in Japan. The results suggest that the decisions an economic entity makes concerning information security investment depend on vulnerability. Our research lends empirical support to prior economic research.
Keywords
Computer Science
Choice Reviews OnlineProcess innovation: reengineering work through information technology
4,411 Citations1993
David Davenport provides numerous examples of firms that have succeeded or failed in combining business change and technology initiatives, and highlights the roles of new organizational structures and human resource programs in developing process innovation.
ACM Transactions on Information and System SecurityThe economics of information security investment
1,301 Citations2002Lawrence A. Gordon, Martin P. Loeb
An economic model is presented that determines the optimal amount to invest to protect a given set of information and takes into account the vulnerability of the information to a security breach and the potential loss should such a breach occur.
The Quarterly Journal of EconomicsIntegration versus Outsourcing in Industry Equilibrium
1,017 Citations2002Gene M. Grossman, E. Helpman
Why information security is hard - an economic perspective
813 Citations2005Ross Anderson
The author puts forward a contrary view: information insecurity is at least as much due to perverse incentives as it is due to technical measures.
ScienceThe Economics of Information Security
808 Citations2006Ross Anderson, Tyler Moore
The economics of information security has recently become a thriving and fast-moving discipline and provides valuable insights into more general areas such as the design of peer-to-peer systems, the optimal balance of effort by programmers and testers, why privacy gets eroded, and the politics of digital rights management.
Journal of Risk and UncertaintyInterdependent Security
490 Citations2003Howard Kunreuther, Geoffrey Heal
PubMedHow process enterprises really work.
473 Citations1999Michael Hammer, Steven A. Stanton
In recent years, forward-thinking companies like IBM, Texas Instruments, and Duke Power have begun to make the leap from process redesign to process management, emerging as true process enterprises--businesses whose management structures are in harmony, rather than at war, with their core processes.
Kluwer Academic Publishers eBooksSystem Reliability and Free Riding
372 Citations2006Hal R. Varian
In the context of system reliability, the authors can distinguish three prototype cases: purely voluntary provision of public goods, individuals may tend to shirk, and an inefficient level of the public good.
They’re Not Employees, They’re People
229 Citations2012Peter F. Drucker
In this essay, business thinker Peter Drucker examines the changing dynamics of the workforce and the need for organizations to take just as much care and responsibility when managing temporary and contract workers as they do with their traditional employees.
Computers & SecurityInformation security policy — what do international information security standards say?
208 Citations2002Karin Höne, Jan H. P. Eloff
The various international information security standards are a good starting point for determining what the information security policy should consist of, but should not be relied upon exclusively for guidance.
Timing the Application of Security Patches for Optimal Uptime
156 Citations2002Steve Beattie, Seth Arnold +4 more
A model is presented that will help provide a formal foundation for when the practitioner should apply security updates, providing both mathematical models of the factors affecting when to patch and collecting empirical data to give the model practical value.
Communications of the ACMAnalyzing security costs
109 Citations2003Rebecca T. Mercuri
Quantification tools, if applied prudently, can assist in the anticipation, budgeting, and control of direct and indirect computer security costs.
RePEc: Research Papers in EconomicsInformation Security and Economics in Computer Networks: An Interdisciplinary Survey and a Proposal of Integrated Optimization of Investment
5 Citations2003K. Matsuura
A survey on the emerging area as well as statistics in the two apparently most relevant international conferences and an integrated optimization of investment in information security and nancial insurance is proposed.
