Tyler Moore: Introduction to Security Economics

March 8, 2017, 8:11 p.m.

Tyler Moore
Tandy School of Computer Science
University of Tulsa
Wednesday, March 8, 2017 at 3:00 PM
Room 368 (CIT - 3rd floor)

Introduction to Security Economics

Economics puts the challenges facing cybersecurity into perspective
better than a purely technical approach does. In this talk I will
demonstrate how economics helps explain why security fails, from the
misaligned incentives among defenders to the presence of information
asymmetries and externalities that inhibit the market from operating
efficiently. I will then discuss a range of policy options to correct
these failures, notably certification schemes and information
disclosure. I will conclude by reporting on a set of 40
semi-structured interviews with information security executives
designed to illuminate how organizations make cybersecurity investment
decisions in the real world. The interviews illustrate how firms have
managed to successfully cope with some, but not all, of the market
failures identified by the security economics literature.

Host: Professor John Savage

