Journal of Information Security

Volume 9, Issue 2 (April 2018)

ISSN Print: 2153-1234   ISSN Online: 2153-1242

Google-based Impact Factor: 3.79  Citations  

Empirical Evidence on the Determinants of Cybersecurity Investments in Private Sector Firms

HTML  XML Download Download as PDF (Size: 330KB)  PP. 133-153  
DOI: 10.4236/jis.2018.92010    2,693 Downloads   5,645 Views  Citations

ABSTRACT

Investments in cybersecurity are critical to the national and economic security of a nation. There is, however, a strong tendency for firms in the private sector to underinvest in cybersecurity activities. This paper reports the results of a survey designed to empirically assess whether treating cybersecurity as an important component of a firm’s internal control system for financial reporting purposes serves as a driver for private sector firms to invest in cybersecurity activities. The findings, in this regard, are significantly positive. The study also shows that a firm’s concern over the risk of incurring a large loss due to a cybersecurity breach and the degree the firm treats cybersecurity investments as generating a competitive advantage are drivers of the level of private sector investment in cybersecurity activities. The implications of the empirical results for designing public policies to mitigate the tendency of private sector firms to underinvest in cybersecurity are also explored.

Share and Cite:

Gordon, L. , Loeb, M. , Lucyshyn, W. and Zhou, L. (2018) Empirical Evidence on the Determinants of Cybersecurity Investments in Private Sector Firms. Journal of Information Security, 9, 133-153. doi: 10.4236/jis.2018.92010.

Cited by

[1] Can shareholders benefit from consumer protection disclosure mandates? Evidence from data breach disclosure laws
The Accounting Review, 2023
[2] Cybersecurity Carrots and Sticks
Schulze… - Available at SSRN …, 2023
[3] Cybernetic Limits of Artificial Intelligence in Accounting and a Future Research Agenda
Artificial Intelligence in Accounting, 2023
[4] Strategies for Boosting Cybersecurity
Schulze… - Available at SSRN …, 2022
[5] TechRank
arXiv preprint arXiv …, 2022
[6] The determinants of cybersecurity risk disclosure in firms' financial reporting: Empirical evidence
Utaibi - Research in Economics, 2022
[7] Toward enhancing the information base on costs of cyber incidents: implications from literature and a large-scale survey conducted in Germany
… : Practice, Process and …, 2022
[8] Heterogeneity in cyber loss severity and its impact on cyber risk measurement
Risk Management, 2022
[9] Making markets for information security: the role of online platforms in bug bounty programs
arXiv preprint arXiv:2204.06905, 2022
[10] Unraveling heterogeneity in cyber risks using quantile regressions
Insurance: Mathematics and Economics, 2022
[11] The Influence of Ethical Beliefs and Attitudes, Norms, and Prior Outcomes on Cybersecurity Investment Decisions
Business & …, 2022
[12] The Role of Peer Events in Corporate Governance: Evidence from Data BreachesRole of Peer Events in Corporate Governance: Evidence from Data Breaches
The Accounting Review, 2022
[13] The role of peer events in corporate governance: Evidence from data breaches
The Accounting Review, 2022
[14] Security First, Security by Design, or Security Pragmatism–Strategic Roles of IT Security in Digitalization Projects
Computers & Security, 2022
[15] PROTECTION OF INFORMATION RESOURCES AS AN INTEGRAL PART OF ECONOMIC SECURITY OF THE ENTERPRISE
Natsional'nyi Hirnychyi …, 2022
[16] Framework for Evaluation of Blockchain-AI Technology and Governance to Secure Interoperable US Healthcare Data
2022
[17] THE ROLE OF INNOVATIVE TECHNOLOGIES IN ENSURING THE COMPETITIVENESS OF THE ENTERPRISE.
Scientific Bulletin of …, 2022
[18] Impact of Internal Control, Cybersecurity Risk, and Competitive Advantage on Retail Cybersecurity Budget
2022
[19] A proposed Framework for Studying the Impact of Cybersecurity on Accounting Information to Increase Trust in The Financial Reports in the Context of Industry 4.0: An …
التجارة والتمويل, 2022
[20] AN ISO 27001 BASED MODEL TO DETERMINE UNIVERSITY INFORMATION SECURITY MATURITY UNDER UNCERTAINTY
2021
[21] The Impact of Cybersecurity on Competitive Advantage
2021
[22] Trends in cybersecurity management issues related to human behaviour and machine learning
2021 International Conference on Electrical …, 2021
[23] INCREASING SECURITY AWARENESS THROUGH LENSES OF CYBERSECURITY CULTURE.
Journal of Information Systems & Operations …, 2021
[24] Public Goods, Sustainable Development and the Contribution of Business
2021
[25] The Adoption of Cybersecurity in Small-to Medium-Sized Businesses: A Correlation Study
2021
[26] Information technology governance and cybersecurity at the board level
2020
[27] Open-Source Tools to Bridge the Cybersecurity Budget Gap in Small Businesses and Local Governments
2020
[28] Strategies to Reduce Small Business Data Security Breaches
2020
[29] Application of a risk-based approach using reflexive risk models in building information security systems
2020
[30] Application of a Risk-Based Approach Using Reflexive Risk Models in Building Information Security Systems.
CITRisk, 2020
[31] Social Engineering Vulnerability of Small Businesses and Recommended Countermeasures
2019
[32] Data Security, Data Breaches, and Compliance
2019
[33] Resiliency under Strategic Foresight: The effects of Cybersecurity Management and Enterprise Risk Management Alignment
Conference Paper, 2019
[34] Cybersecurity in accounting research
2019
[35] Cyber security and human resource development implications for the enterprise
2019
[36] Cybersecurity Investment Allocation for a Multi-Branch Firm: Modeling and Optimization
2019
[37] Information Technology Governance: Reflections on the Past and Future Directions
2019
[38] Technology Threat Avoidance Factors as Predictors of Risky Cybersecurity Behavior Within the Enterprise
2019
[39] Successful Operational Cyber Security Strategies for Small Businesses
2019
[40] AIS Security Investment to Mitigate Hacking Risk: The Role of Attitudes, Perceived Norms, and Outcomes
2019
[41] Framework for Analyzing the Competitiveness of Advanced Technology Manufacturing Firms
2018
[42] Director experience and cybersecurity events
2018
[43] Can shareholders benefit from consumer protection disclosure mandates? Evidence from data breach disclosure laws and the cost of equity
Evidence from data breach disclosure laws …, 2018
[44] AIS Electronic Library (AISeL)
[45] Науковий вісник НГУ

Copyright © 2024 by authors and Scientific Research Publishing Inc.

Creative Commons License

This work and the related PDF file are licensed under a Creative Commons Attribution 4.0 International License.