...
首页> 外文期刊>Communications of the Association for Information Systems >Rethinking FS-ISAC: An IT Security Information Sharing Network Model for the Financial Services Sector
【24h】

Rethinking FS-ISAC: An IT Security Information Sharing Network Model for the Financial Services Sector

机译:反思FS-ISAC:金融服务业的IT安全信息共享网络模型

获取原文
           

摘要

This study examines a critical incentive alignment issue facing FS-ISAC (the information sharing alliance in the financial services industry). Failure to encourage members to share their IT security-related information has seriously undermined the founding rationale of FS-ISAC. Our analysis shows that many information sharing alliances’ membership policies are plagued with the incentive misalignment issue and may result in a “free-riding” or “no information sharing” equilibrium. To address this issue, we propose a new information sharing membership policy that incorporates an insurance option and show that the proposed policy can align members’ incentives and lead to a socially optimal outcome. Moreover, when a transfer payment mechanism is implemented, all member firms will be better off joining the insurance network. These results are demonstrated in a simulation in which IT security breach losses are compared both with and without participating in the proposed information sharing insurance plan.
机译:这项研究探讨了FS-ISAC(金融服务业中的信息共享联盟)面临的关键激励措施协调问题。未能鼓励成员共享其与IT安全性相关的信息,严重破坏了FS-ISAC的成立基础。我们的分析表明,许多信息共享联盟的成员资格政策受到激励失调问题的困扰,并可能导致“搭便车”或“无信息共享”的平衡。为了解决此问题,我们提出了一项新的信息共享会员政策,其中纳入了保险选项,并表明该政策可以使会员的激励措施保持一致,并实现社会最优结果。此外,当实施转移支付机制时,所有成员公司都将更好地加入保险网络。这些结果在模拟中得到了证明,在该模拟中,无论是否参与提议的信息共享保险计划,都将IT安全漏洞损失进行比较。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号