There is a long-standing claim that cybersecurity and digital information system protection is primarily a technological issue falling into the information technology domain. However, empirical evidence demonstrates that human and behavioural factors are usually the main vulnerability causing cybersecurity accidents. This chapter examines the role of the human capital of being both a vulnerability and strength in cybersecurity risk management. It provides recommendations to align firms’ corporate governance and internal control systems to human-related cybersecurity risk.

Human Capital Vulnerability and Cybersecurity Risk Management: An Integrated Approach

La Torre Matteo
;
2021-01-01

Abstract

There is a long-standing claim that cybersecurity and digital information system protection is primarily a technological issue falling into the information technology domain. However, empirical evidence demonstrates that human and behavioural factors are usually the main vulnerability causing cybersecurity accidents. This chapter examines the role of the human capital of being both a vulnerability and strength in cybersecurity risk management. It provides recommendations to align firms’ corporate governance and internal control systems to human-related cybersecurity risk.
2021
978-3-030-80736-8
978-3-030-80737-5
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11564/755441
 Attenzione

Attenzione! I dati visualizzati non sono stati sottoposti a validazione da parte dell'ateneo

Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus ND
  • ???jsp.display-item.citation.isi??? ND
social impact