Szczegóły publikacji

Opis bibliograficzny

A linear model for optimal cybersecurity investment in Industry 4.0 supply chains / Tadeusz SAWIK // International Journal of Production Research ; ISSN 0020-7543. — 2022 — vol. 60 no. 4, s. 1368-1385. — Bibliogr. s. 1383-1384, Abstr. — Publikacja dostępna online od: 2020-12-08. — Dod. afiliacja: Department of Engineering, Reykjavik University, Reykjavik, Iceland


Autor


Słowa kluczowe

Industry 4.0cybersecurity investmentcyber risk managementbest–worst criterionmixed integer linear programmingsafeguard portfolio

Dane bibliometryczne

ID BaDAP139592
Data dodania do BaDAP2022-03-24
Tekst źródłowyURL
DOI10.1080/00207543.2020.1856442
Rok publikacji2022
Typ publikacjiartykuł w czasopiśmie
Otwarty dostęptak
Czasopismo/seriaInternational Journal of Production Research

Abstract

This paper presents a mixed integer linear programming formulation for optimisation of cybersecurity investment in Industry 4.0 supply chains. Using a recursive linearisation procedure, a complex nonlinear stochastic combinatorial optimisation model with a classical exponential function of breach probability is transformed into its linear equivalent. The obtained linear optimisation model is capable of selecting optimal portfolio of security safeguards to minimise cybersecurity investment and expected cost of losses from security breaches in a supply chain. The new efficiency measures of cybersecurity investment are introduced: cybersecurity value and cybersecurity ratio. In addition, the proposed linear model has been enhanced for the Hurwicz-type, best–worst criterion to minimise a convex combination of the minimal and the maximal supply chain node vulnerability, under limited budget. The resulting compromise cybersecurity investment aims at balancing vulnerability over the entire supply chain, independent of cyberattack probabilities and potential losses by security breaches, thereby hardening the weaker critical nodes. The findings indicate a crucial role of intrinsic vulnerability, determined by the architecture of Industry 4.0 supply chain, and highlight ‘design for cybersecurity’ as an important emerging area of research.

Publikacje, które mogą Cię zainteresować

artykuł
Balancing cybersecurity in a supply chain under direct and indirect cyber risks / Tadeusz SAWIK // International Journal of Production Research ; ISSN 0020-7543. — 2022 — vol. 60 no. 2, s. 766-782. — Bibliogr. s. 782, Abstr. — Publikacja dostępna online od: 2021-04-20. — Dod. afiliacja: Reykjavik University, Reykjavik, Iceland
artykuł
A rough cut cybersecurity investment using portfolio of security controls with maximum cybersecurity value / Tadeusz SAWIK, Bartosz SAWIK // International Journal of Production Research ; ISSN 0020-7543. — 2022 — vol. 60 no. 21, s. 6556–6572. — Bibliogr. s. 6569–6570, Abstr. — Publikacja dostępna online od: 2021-11-05. — T. Sawik - dod. afiliacja: Reykjavik University, Reykjavik, Iceland ; B. Sawik - dod. afiliacje: Public University of Navarre, Pamplona, Spain; University of California, Berkeley, USA