Does cybersecurity maturity level assurance improve cybersecurity risk management in supply chains?
Ju Myung Song,
Tawei Wang,
Ju-Chun Yen and
Yu-Hung Chen
International Journal of Accounting Information Systems, 2024, vol. 54, issue C
Abstract:
This study uses analytical models to investigate whether requiring cybersecurity assurance or a particular maturity level for vendors or contractors will help them improve their cybersecurity management. Our findings suggest that, if a supplier decides on its preferred cybersecurity maturity level without knowing what level a contract requires, the supplier is more likely to exert more effort to improve its cybersecurity management. We also show that a buyer can incentivize the supplier to engage in improving cybersecurity risk management by imposing a reduced contractual price or a fine when a breach occurs. Our findings reveal the role played by cybersecurity maturity level assurance and we discuss practical implications.
Keywords: Cybersecurity assurance; Cybersecurity maturity model; Analytical model (search for similar items in EconPapers)
Date: 2024
References: View references in EconPapers View complete reference list from CitEc
Citations:
Downloads: (external link)
http://www.sciencedirect.com/science/article/pii/S1467089524000289
Full text for ScienceDirect subscribers only
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:eee:ijoais:v:54:y:2024:i:c:s1467089524000289
DOI: 10.1016/j.accinf.2024.100695
Access Statistics for this article
International Journal of Accounting Information Systems is currently edited by S.V. Grabski
More articles in International Journal of Accounting Information Systems from Elsevier
Bibliographic data for series maintained by Catherine Liu ().