The rapid development of cyber insurance market brings forward the question about the effect of cyber insurance on cyber security. Some researchers believe that the effect should be positive as organisations will be forced to maintain a high level of security in order to pay lower premiums. On the other hand, other researchers conduct a theoretical analysis and demonstrate that availability of cyber insurance may result in lower investments in security. In this paper we propose a mathematical analysis of a cyber-insurance model in a non-competitive market. We prove that with a right pricing strategy it is always possible to ensure that security investments are at least as high as without insurance. Our general theoretical analysis is confirmed by specific cases using CARA and CRRA utility functions.

Preventing the drop in security investments for non-competitive cyber-insurance market

Martinelli Fabio;Orlando Albina;Uuganbayar Ganbayar;Yautsiukhin Artsiom
2018

Abstract

The rapid development of cyber insurance market brings forward the question about the effect of cyber insurance on cyber security. Some researchers believe that the effect should be positive as organisations will be forced to maintain a high level of security in order to pay lower premiums. On the other hand, other researchers conduct a theoretical analysis and demonstrate that availability of cyber insurance may result in lower investments in security. In this paper we propose a mathematical analysis of a cyber-insurance model in a non-competitive market. We prove that with a right pricing strategy it is always possible to ensure that security investments are at least as high as without insurance. Our general theoretical analysis is confirmed by specific cases using CARA and CRRA utility functions.
2018
Istituto Applicazioni del Calcolo ''Mauro Picone''
Istituto di informatica e telematica - IIT
Inglese
Cuppens N., Cuppens F., Lanet JL., Legay A., Garcia-Alfaro J. (eds)
Risks and Security of Internet and Systems
12th International Conference on Risks and Security of Internet and Systems, CRiSIS 2017
10694 LNCS
159
174
9783319766867
http://www.scopus.com/record/display.url?eid=2-s2.0-85043981242&origin=inward
Springer
Berlin
GERMANIA
Sì, ma tipo non specificato
19/09/2017,21/09/2017
Dinard, France
Competitive markets
Cyber insurance
Cyber security
Mathematical analysis
Pricing strategy Security investments Utility functions
4
none
Martinelli, Fabio; Orlando, Albina; Uuganbayar, Ganbayar; Yautsiukhin, Artsiom
273
info:eu-repo/semantics/conferenceObject
04 Contributo in convegno::04.01 Contributo in Atti di convegno
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.14243/372394
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 14
  • ???jsp.display-item.citation.isi??? ND
social impact