Please use this identifier to cite or link to this item: http://bura.brunel.ac.uk/handle/2438/9977
Full metadata record
DC FieldValueLanguage
dc.contributor.authorLewis, R-
dc.contributor.authorLouvieris, P-
dc.contributor.authorAbbott, P-
dc.contributor.authorClewley, N-
dc.contributor.authorJones, K-
dc.date.accessioned2015-01-28T10:27:36Z-
dc.date.available2014-
dc.date.available2015-01-28T10:27:36Z-
dc.date.issued2014-
dc.identifier.citationECIS 2014 Proceedings - 22nd European Conference on Information Systems, Tel Aviv, 9 - 11 June, 2014en_US
dc.identifier.urihttp://ecis2014.eu/E-poster/docs.php-
dc.identifier.urihttp://bura.brunel.ac.uk/handle/2438/9977-
dc.description.abstractUK small to medium sized enterprises (SMEs) are suffering increasing levels of cybersecurity breaches and are a major point of vulnerability in the supply chain networks in which they participate. A key factor for achieving optimal security levels within supply chains is the management and sharing of cybersecurity information associated with specific metrics. Such information sharing schemes amongst SMEs in a supply chain network, however, would give rise to a certain level of risk exposure. In response, the purpose of this paper is to assess the implications of adopting select cybersecurity metrics for information sharing in SME supply chain consortia. Thus, a set of commonly used metrics in a prototypical cybersecurity scenario were chosen and tested from a survey of 17 UK SMEs. The results were analysed in respect of two variables; namely, usefulness of implementation and willingness to share across supply chains. Consequently, we propose a Cybersecurity Information Sharing Taxonomy for identifying risk exposure categories for SMEs sharing cybersecurity information, which can be applied to developing Information Sharing Agreements (ISAs) within SME supply chain consortia.en_US
dc.language.isoenen_US
dc.subjectCybersecurity metricsen_US
dc.subjectInformation security managementen_US
dc.subjectInformation sharingen_US
dc.subjectInformation sharing agreementen_US
dc.subjectRisk managementen_US
dc.subjectSME supply chainsen_US
dc.titleCybersecurity information sharing: A framework for information security management in UK SME supply chainsen_US
dc.typeConference Paperen_US
dc.relation.isPartOfECIS 2014 Proceedings - 22nd European Conference on Information Systems-
dc.relation.isPartOfECIS 2014 Proceedings - 22nd European Conference on Information Systems-
pubs.organisational-data/Brunel-
pubs.organisational-data/Brunel/Brunel Staff by College/Department/Division-
pubs.organisational-data/Brunel/Brunel Staff by College/Department/Division/College of Engineering, Design and Physical Sciences-
pubs.organisational-data/Brunel/Brunel Staff by College/Department/Division/College of Engineering, Design and Physical Sciences/Dept of Computer Science-
pubs.organisational-data/Brunel/Brunel Staff by College/Department/Division/College of Engineering, Design and Physical Sciences/Dept of Computer Science/Computer Science-
pubs.organisational-data/Brunel/University Research Centres and Groups-
pubs.organisational-data/Brunel/University Research Centres and Groups/School of Health Sciences and Social Care - URCs and Groups-
pubs.organisational-data/Brunel/University Research Centres and Groups/School of Health Sciences and Social Care - URCs and Groups/Brunel Institute for Ageing Studies-
Appears in Collections:Dept of Computer Science Research Papers

Files in This Item:
File Description SizeFormat 
Fulltext.pdf792.91 kBAdobe PDFView/Open


Items in BURA are protected by copyright, with all rights reserved, unless otherwise indicated.