Cyber risk and cybersecurity: a systematic review of data availability.

Frank Cremer, Barry Sheehan, Michael Fortmann, Arash N Kia, Martin Mullins, Finbarr Murphy, Stefan Materne
{"title":"Cyber risk and cybersecurity: a systematic review of data availability.","authors":"Frank Cremer,&nbsp;Barry Sheehan,&nbsp;Michael Fortmann,&nbsp;Arash N Kia,&nbsp;Martin Mullins,&nbsp;Finbarr Murphy,&nbsp;Stefan Materne","doi":"10.1057/s41288-022-00266-6","DOIUrl":null,"url":null,"abstract":"<p><p>Cybercrime is estimated to have cost the global economy just under USD 1 trillion in 2020, indicating an increase of more than 50% since 2018. With the average cyber insurance claim rising from USD 145,000 in 2019 to USD 359,000 in 2020, there is a growing necessity for better cyber information sources, standardised databases, mandatory reporting and public awareness. This research analyses the extant academic and industry literature on cybersecurity and cyber risk management with a particular focus on data availability. From a preliminary search resulting in 5219 cyber peer-reviewed studies, the application of the systematic methodology resulted in 79 unique datasets. We posit that the lack of available data on cyber risk poses a serious problem for stakeholders seeking to tackle this issue. In particular, we identify a lacuna in open databases that undermine collective endeavours to better manage this set of risks. The resulting data evaluation and categorisation will support cybersecurity researchers and the insurance industry in their efforts to comprehend, metricise and manage cyber risks.</p><p><strong>Supplementary information: </strong>The online version contains supplementary material available at 10.1057/s41288-022-00266-6.</p>","PeriodicalId":75009,"journal":{"name":"The Geneva papers on risk and insurance. Issues and practice","volume":"47 3","pages":"698-736"},"PeriodicalIF":0.0000,"publicationDate":"2022-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.ncbi.nlm.nih.gov/pmc/articles/PMC8853293/pdf/","citationCount":"48","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"The Geneva papers on risk and insurance. Issues and practice","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1057/s41288-022-00266-6","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"2022/2/17 0:00:00","PubModel":"Epub","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 48

Abstract

Cybercrime is estimated to have cost the global economy just under USD 1 trillion in 2020, indicating an increase of more than 50% since 2018. With the average cyber insurance claim rising from USD 145,000 in 2019 to USD 359,000 in 2020, there is a growing necessity for better cyber information sources, standardised databases, mandatory reporting and public awareness. This research analyses the extant academic and industry literature on cybersecurity and cyber risk management with a particular focus on data availability. From a preliminary search resulting in 5219 cyber peer-reviewed studies, the application of the systematic methodology resulted in 79 unique datasets. We posit that the lack of available data on cyber risk poses a serious problem for stakeholders seeking to tackle this issue. In particular, we identify a lacuna in open databases that undermine collective endeavours to better manage this set of risks. The resulting data evaluation and categorisation will support cybersecurity researchers and the insurance industry in their efforts to comprehend, metricise and manage cyber risks.

Supplementary information: The online version contains supplementary material available at 10.1057/s41288-022-00266-6.

Abstract Image

Abstract Image

Abstract Image

网络风险和网络安全:对数据可用性的系统审查。
据估计,到2020年,网络犯罪给全球经济造成的损失接近1万亿美元,自2018年以来增长了50%以上。随着平均网络保险索赔从2019年的14.5万美元上升到2020年的35.9万美元,越来越需要更好的网络信息来源、标准化数据库、强制性报告和公众意识。本研究分析了现有的关于网络安全和网络风险管理的学术和行业文献,特别关注数据可用性。通过对5219个网络同行评议研究的初步搜索,系统方法的应用产生了79个独特的数据集。我们认为,缺乏可用的网络风险数据对寻求解决这一问题的利益相关者构成了一个严重的问题。特别是,我们发现了开放数据库中的一个空白,它破坏了更好地管理这一系列风险的集体努力。由此产生的数据评估和分类将支持网络安全研究人员和保险业理解、衡量和管理网络风险。补充信息:在线版本包含补充资料,可在10.1057/s41288-022-00266-6获得。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信