• DocumentCode
    1583312
  • Title

    i-HOPE Framework for Predicting Cyber Breaches: A Logit Approach

  • Author

    Das, Saini ; Mukhopadhyay, Arunabha ; Shukla, Girja K.

  • fYear
    2013
  • Firstpage
    3008
  • Lastpage
    3017
  • Abstract
    In light of the recent surge in cyber security breaches globally, Information Security Management Systems (ISMS) for organizations is of utmost importance. In this paper, we used the CSI-FBI survey questionnaires from 1997 to 2010 and ISO/IEC27001 standard to propose an i-HOPE framework to predict the likelihood of a cyber breach. Generalized Linear Model i.e. Log it approach and CSI-FBI questionnaire data was used to compute and validate our proposed model. Using our i-HOPE framework we conclude that (i) specific security technologies (Firewalls, IDSs, Biometrics, firewalls), can deter only specific types of attacks (ii) reporting of cyber breaches to law enforcing bodies does not deter cyber attacks (iii) increase in percentage of (a) IT budget allocated to security and (b) outsourcing of IT security function decreases the likelihood of an attack.
  • Keywords
    Computer crime; Hidden Markov models; ISO standards; Organizations; Standards organizations; CSI/FBI; Generalized linear model; ISO27001; Information Security Risk Management; logit; security policy;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    System Sciences (HICSS), 2013 46th Hawaii International Conference on
  • Conference_Location
    Wailea, HI, USA
  • ISSN
    1530-1605
  • Print_ISBN
    978-1-4673-5933-7
  • Electronic_ISBN
    1530-1605
  • Type

    conf

  • DOI
    10.1109/HICSS.2013.256
  • Filename
    6480206