Please use this identifier to cite or link to this item: https://hdl.handle.net/20.500.11851/1884
Full metadata record
DC FieldValueLanguage
dc.contributor.authorCezar, Asunur-
dc.contributor.authorÇavuşoğlu, Hüseyin-
dc.contributor.authorRaghunathan, Şrinivaşan-
dc.date.accessioned2019-07-10T14:40:09Z
dc.date.available2019-07-10T14:40:09Z
dc.date.issued2014-03-
dc.identifier.citationCezar, A., Cavusoglu, H., & Raghunathan, S. (2013). Outsourcing information security: Contracting issues and security implications. Management Science, 60(3), 638-657.en_US
dc.identifier.urihttps://doi.org/10.1287/mnsc.2013.1763-
dc.identifier.urihttps://hdl.handle.net/20.500.11851/1884-
dc.description.abstractA unique challenge in information security outsourcing is that neither the outsourcing firm nor the managed security service provider (MSSP) perfectly observes the outcome, the occurrence of a security breach, of prevention effort. Detection of security breaches often requires specialized effort. The current practice is to outsource both prevention and detection to the same MSSP. Some security experts have advocated outsourcing prevention and detection to different MSSPs. We show that the former outsourcing contract leads to a significant disincentive to provide detection effort. The latter contract alleviates this problem but introduces misalignment of incentives between the firm and the MSSPs and eliminates the advantages offered by complementarity between prevention and detection functions, which may lead to a worse outcome than the current contract. We propose a new contract that is superior to these two on various dimensions.en_US
dc.language.isoenen_US
dc.publisherINFORMS Inst.for Operations Res.and the Management Sciencesen_US
dc.relation.ispartofManagement Scienceen_US
dc.rightsinfo:eu-repo/semantics/closedAccessen_US
dc.subjectIndustryen_US
dc.subjectSecurity of dataen_US
dc.titleOutsourcing Information Security: Contracting Issues and Security Implicationsen_US
dc.typeArticleen_US
dc.departmentFaculties, Faculty of Economics and Administrative Sciences, Department of Managementen_US
dc.departmentFakülteler, İktisadi ve İdari Bilimler Fakültesi, İşletme Bölümüen_US
dc.identifier.volume60en_US
dc.identifier.issue3en_US
dc.identifier.startpage638en_US
dc.identifier.endpage657en_US
dc.identifier.wosWOS:000332839000006-
dc.identifier.scopus2-s2.0-84897080478-
dc.institutionauthorCezar, Asunur-
dc.identifier.doi10.1287/mnsc.2013.1763-
dc.authorscopusid34871459700-
dc.authorscopusid24484220300-
dc.relation.publicationcategoryMakale - Uluslararası Hakemli Dergi - Kurum Öğretim Elemanıen_US
dc.identifier.scopusqualityN/A-
dc.identifier.wosqualityN/A-
item.openairetypeArticle-
item.openairecristypehttp://purl.org/coar/resource_type/c_18cf-
item.grantfulltextnone-
item.languageiso639-1en-
item.cerifentitytypePublications-
item.fulltextNo Fulltext-
Appears in Collections:İşletme Bölümü / Department of Management
Scopus İndeksli Yayınlar Koleksiyonu / Scopus Indexed Publications Collection
WoS İndeksli Yayınlar Koleksiyonu / WoS Indexed Publications Collection
Show simple item record



CORE Recommender

SCOPUSTM   
Citations

38
checked on Dec 21, 2024

WEB OF SCIENCETM
Citations

50
checked on Dec 21, 2024

Page view(s)

88
checked on Dec 23, 2024

Google ScholarTM

Check




Altmetric


Items in GCRIS Repository are protected by copyright, with all rights reserved, unless otherwise indicated.