首页> 外文期刊>Information technology & management >Information security in networked supply chains: impact of network vulnerability and supply chain integration on incentives to invest
【24h】

Information security in networked supply chains: impact of network vulnerability and supply chain integration on incentives to invest

机译:网络化供应链中的信息安全:网络脆弱性和供应链整合对投资动机的影响

获取原文
获取原文并翻译 | 示例
           

摘要

Recent supply chain reengineering efforts have focused on integrating firms' production, inventory and replenishment activities with the help of communication networks. While communication networks and supply chain integration facilitate optimization of traditional supply chain functions, they also exacerbate the information security risk: communication networks propagate security breaches from one firm to another, and supply chain integration causes breach on one firm to affect other firms in the supply chain. We study the impact of network security vulnerability and supply chain integration on firms' incentives to invest in information security. We find that even though an increase in either the degree of network vulnerability or the degree of supply chain integration increases the security risk, they have different impacts on firms' incentives to invest in security. If the degree of supply chain integration is low, then an increase in network vulnerability induces firms to reduce, rather than increase, their security investments. A sufficiently high degree of supply chain integration alters the impact of network vulnerability into one in which firms have an incentive to increase their investments when the network vulnerability is higher. Though an increase in the degree of supply integration enhances firms' incentives to invest in security, private provisioning for security always results in a lessrnthan socially optimal security level. A liability mechanism that makes the responsible party partially compensate for the other party's loss induces each firm to invest at the socially optimal level. If firms choose the degree of integration, in addition to security investment, then firms may choose a higher degree of integration when they decide individually than when they decide jointly, suggesting an even greater security risk to the supply chain.
机译:最近的供应链再造工作集中在借助通信网络整合公司的生产,库存和补货活动上。虽然通信网络和供应链集成有助于优化传统供应链功能,但它们也加剧了信息安全风险:通信网络将安全漏洞从一个公司传播到另一家公司,而供应链集成导致一个公司的安全漏洞影响到供应中的其他公司。链。我们研究了网络安全漏洞和供应链整合对企业激励信息安全投资的影响。我们发现,即使网络脆弱性程度或供应链整合程度的增加会增加安全风险,但它们对企业投资安全性的动机产生了不同的影响。如果供应链集成度较低,则网络漏洞的增加会导致企业减少而不是增加其安全投资。足够高的供应链集成度可以将网络脆弱性的影响改变成一种,当网络脆弱性更高时,企业就有动力增加投资。尽管供应整合程度的提高增强了公司投资于安全性的动机,但是对安全性的私人配置总是导致低于社会最优安全性水平。使责任方部分补偿另一方损失的责任机制促使每家公司以社会最优水平进行投资。如果企业选择除安全投资之外的整合度,那么企业在单独决策时可能会选择比联合决策时更高的整合度,这意味着供应链面临更大的安全风险。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号