skip to main content
research-article

Valuing data security and privacy using cyber insurance

Published:19 February 2015Publication History
Skip Abstract Section

Abstract

What should be the minimum value of data security or privacy to a customer? We reason that at a minimum this value should be equal to the premium charged by an insurer for cyber insurance that compensates the customer for the claims resulting from the data security and privacy breaches. We calculate the premium for cyber insurance and the percentage coverage availed by a customer using Monte Carlo simulations.

References

  1. Website: IT Governance UK, http://www.itgovernance.co.uk/dpa-penalties.aspx#.VJJ84tKUdpsGoogle ScholarGoogle Scholar
  2. Basel Committee on Banking Supervision, International Convergence of Capital Measurement and Capital Standards- A Revised Framework, June 2006Google ScholarGoogle Scholar
  3. Yannacopoulos, A. N., Lambrinoudakis, C., Gritzalis, S., Xanthopoulos, S. Z., and Katsikas, S. N., 2008, Modeling Privacy Insurance Contracts and Their Utilization in Risk Management for ICT Firms, ESORICS 2008, pp. 207--222, 2008. Google ScholarGoogle ScholarDigital LibraryDigital Library
  4. Rainer Böhme, 2005, Cyber-Insurance Revisited, Workshop on the Economics of Information Security (WEIS) 2005.Google ScholarGoogle Scholar
  5. Gritzalis, S., Yannacopoulos, A. N., Lambrinoudakis, C., Hatzopoulos P., and Katsikas, S. N., 2007, A probabilistic model for optimal insurance contracts against security risks and privacy violation in IT outsourcing environments, International Journal of Information Security (2007) 6 pp. 197--211 Google ScholarGoogle ScholarDigital LibraryDigital Library
  6. Stefan Berthold, Rainer Böhme, 2009, Valuing privacy with option pricing theory, Workshop on the Economics of Information Security (WEIS) 2009.Google ScholarGoogle Scholar
  7. Rainer Böhme, Galina Schwartz, 2010, Modeling Cyber-Insurance: Towards A Unifying Framework, Workshop on the Economics of Information Security (WEIS) 2010Google ScholarGoogle Scholar
  8. Alexander McNeil, Rüdiger Frey, Paul Embrechts, (2005) Quantitative Risk Management: Concepts Techniques and Tools. Princeton University Press, 2005Google ScholarGoogle Scholar
  9. Paul Embrechts, 1996 Actuarial versus financial pricing of insurance. Paper presented at the conference on Risk Management of Insurance Firms, The Wharton School of the University of Pennsylvania, 1996.Google ScholarGoogle Scholar
  10. Tomas Bjork, 2009, Arbitrage Theory in Continuous Time, Third Edition, Oxford University Press, 2009Google ScholarGoogle Scholar
  11. Delbaen, F., Haezendonck, J., 1989, A martingale approach to premium calculation principles in an arbitrage free market. Insurance: Mathematics and Economics 8 (1989) 269--277.Google ScholarGoogle ScholarCross RefCross Ref

Recommendations

Comments

Login options

Check if you have access through your login credentials or your institution to get full access on this article.

Sign in

Full Access

PDF Format

View or Download as a PDF file.

PDF

eReader

View online with eReader.

eReader