Vis enkel innførsel

dc.contributor.authorQian, Ying
dc.contributor.authorFang, Yulin
dc.contributor.authorGonzalez, Jose J.
dc.date.accessioned2013-02-06T09:08:54Z
dc.date.available2013-02-06T09:08:54Z
dc.date.issued2012
dc.identifier.citationQian, Y., Fang, Y., & Gonzalez, J. J. (2012). Managing information security risks during new technology adoption. Computers and Security, 31(8), 859-869. doi: 10.1016/j.cose.2012.09.001no_NO
dc.identifier.issn0167-4048
dc.identifier.urihttp://hdl.handle.net/11250/137987
dc.descriptionAuthor's version of an article in the journal: Computers and Security. Also available from the publisher at: http://dx.doi.org/10.1016/j.cose.2012.09.001no_NO
dc.description.abstractIn the present study, we draw on previous system dynamics research on operational transition and change of vulnerability to investigate the role of incident response capability in controlling the severity of incidents during the adoption of new technology. Toward this end, we build a system dynamics model using the Norwegian Oil and Gas Industry as the context. The Norwegian Oil and Gas Industry has started to adopt new information communication technology to connect its offshore platforms, onshore control centers, and suppliers. In oil companies, the management is generally aware of the increasing risks associated with operational transition; however, to date, investment in incident response capability has not been highly prioritized because of the uncertainty related to risks and the present reactive mental model of security risk management. The model simulation shows that a reactive approach to security risk management might trap the organization into blindness to minor incidents and low incident response capability, which can lead to severe incidents. The system dynamics model can serve as a means to promote proactive investment in incident response capability.no_NO
dc.language.isoengno_NO
dc.publisherElsevierno_NO
dc.subjectdelayno_NO
dc.subjectinformation security managementno_NO
dc.subjectintegrated operationsno_NO
dc.subjectproactive investmentno_NO
dc.subjectreactive investmentno_NO
dc.subjectsystem dynamicsno_NO
dc.titleManaging information security risks during new technology adoptionno_NO
dc.typeJournal articleno_NO
dc.typePeer reviewedno_NO
dc.subject.nsiVDP::Technology: 500::Information and communication technology: 550no_NO
dc.source.pagenumber859-869no_NO
dc.source.volume31no_NO
dc.source.journalComputers and Securityno_NO
dc.source.issue8no_NO
dc.identifier.doi10.1016/j.cose.2012.09.001


Tilhørende fil(er)

Thumbnail
Thumbnail

Denne innførselen finnes i følgende samling(er)

Vis enkel innførsel