Information security risks are becoming a critical issue to organizations given the significant impact of security related incidents. In this dissertation, we seek to further our understanding of how information security incidents and security practices affect information security risks. The first essay proposes a decision tree classification model to investigate how the nature of security risk factors disclosed in financial reports is associated with breach announcements in the subsequent period. We construct and evaluate the model based on the design science principles in Hevner et al. (2004). The model shows that security risk factors with action-oriented terms are less likely to be related to future incidents. We evaluate the model by s...
This dissertation includes two essays on the economic aspects of information security. The f...
While the infosec economics literature has begun to investigate the stock market impact of security ...
Risk transfer plays an increasing role in information security risk management as organisations purc...
Do information security disclosures reflect future incidents? This paper investigates how the nature...
Understanding which elements affect a company’s value is one of the main goals for the board of dire...
ABSTRACT: Assessing the value of information technology (IT) security is challenging because of the ...
Purpose – In this study, we examined the influence of one or more information security breaches on a...
Understanding the financial value resulting from IS security investments is critically important to ...
This dissertation consists of three essays that examine cybersecurity-related matters. In the first ...
We investigate consumer and firm responses to information privacy and security factors across three ...
The information systems security is nowadays no longer independent from the security environment of ...
The goal of this dissertation is to investigate the impact of the American Institute of Certified Pu...
This thesis is composed of three self-contained empirical essays in corporate finance, with the firs...
While the infosec economics literature has begun to investigate the stock market impact of security ...
When a company is hacked, market participants take notice. This has been observed consistently for ...
This dissertation includes two essays on the economic aspects of information security. The f...
While the infosec economics literature has begun to investigate the stock market impact of security ...
Risk transfer plays an increasing role in information security risk management as organisations purc...
Do information security disclosures reflect future incidents? This paper investigates how the nature...
Understanding which elements affect a company’s value is one of the main goals for the board of dire...
ABSTRACT: Assessing the value of information technology (IT) security is challenging because of the ...
Purpose – In this study, we examined the influence of one or more information security breaches on a...
Understanding the financial value resulting from IS security investments is critically important to ...
This dissertation consists of three essays that examine cybersecurity-related matters. In the first ...
We investigate consumer and firm responses to information privacy and security factors across three ...
The information systems security is nowadays no longer independent from the security environment of ...
The goal of this dissertation is to investigate the impact of the American Institute of Certified Pu...
This thesis is composed of three self-contained empirical essays in corporate finance, with the firs...
While the infosec economics literature has begun to investigate the stock market impact of security ...
When a company is hacked, market participants take notice. This has been observed consistently for ...
This dissertation includes two essays on the economic aspects of information security. The f...
While the infosec economics literature has begun to investigate the stock market impact of security ...
Risk transfer plays an increasing role in information security risk management as organisations purc...