Pregled bibliografske jedinice broj: 1151255
Effectiveness of cybersecurity audit
Effectiveness of cybersecurity audit // International journal of accounting information systems, 44 (2022), 1-21 doi:10.1016/j.accinf.2021.100548 (međunarodna recenzija, članak, znanstveni)
CROSBI ID: 1151255 Za ispravke kontaktirajte CROSBI podršku putem web obrasca
Naslov
Effectiveness of cybersecurity audit
Autori
Slapničar, Sergeja ; Vuko, Tina ; Čular, Marko ; Drašček, Matej
Izvornik
International journal of accounting information systems (1467-0895) 44
(2022);
1-21
Vrsta, podvrsta i kategorija rada
Radovi u časopisima, članak, znanstveni
Ključne riječi
cybersecurity, internal audit, assurance, index, maturity
Sažetak
The aim of this paper is to analyze the effectiveness of internal audit of cybersecurity. We developed a Cybersecurity Audit Index composed of three dimensions – planning, performing and reporting – to address this question. We hypothesize that cybersecurity audit effectiveness is positively related to cyber risk management maturity and negatively to the probability of a successful cyber attack. We tested our hypotheses in a survey with auditors and Chief Audit Executives from various countries and industries. We found that Cybersecurity Audit Index scores significantly vary, with a mean of 58 on a scale from 0 to 100. While the planning and performing phases are strongly and positively correlated, they are less strongly related to reporting about cyber risk management effectiveness to the Board of Directors. As predicted, the Cybersecurity Audit Index is positively associated with maturity, but contrary to expectations, it is not related to the probability of a successful cyber attack. This is the first paper that comprehensively measures the effectiveness of cybersecurity audit and its effects on cyber risk management.
Izvorni jezik
Engleski
Znanstvena područja
Ekonomija
Citiraj ovu publikaciju:
Časopis indeksira:
- Current Contents Connect (CCC)
- Web of Science Core Collection (WoSCC)
- Social Science Citation Index (SSCI)
- SCI-EXP, SSCI i/ili A&HCI
- Scopus