UCL Discovery
UCL home » Library Services » Electronic resources » UCL Discovery

Expanding the Gordon-Loeb Model to Cyber-Insurance

Skeoch, HRK; (2021) Expanding the Gordon-Loeb Model to Cyber-Insurance. Computers & Security , Article 102533. 10.1016/j.cose.2021.102533. (In press). Green open access

[thumbnail of gl-expansion.pdf]
Preview
Text
gl-expansion.pdf - Accepted Version

Download (1MB) | Preview

Abstract

We present an economic model for decisions on competing cyber-security and cyber-insurance investment based on the Gordon-Loeb model for investment in information security. We consider a one-period scenario in which a firm may invest in information security measures to reduce the probability of a breach, in cyber-insurance or in a combination of both. The optimal combination of investment and insurance under the assumptions of the Gordon-Loeb model is investigated via consideration of the costs and benefits of investment in security alongside purchasing insurance at an independent premium rate. Under both exponential (constant absolute risk aversion) and logarithmic (constant relative risk aversion) utility functions it is found that when the insurance premium is below a certain value, utility is maximised with insurance and security investment. These results suggest that cyber-insurance is a worthwhile undertaking provided it is not overly costly. We believe this model to be the first attempt to integrate the Gordon-Loeb model into a classical microeconomic analysis of insurance, particularly using the Gordon-Loeb security breach functions to determine the probability of an insurance claim. The model follows the tradition of the Gordon-Loeb model in being accessible to practitioners and decision makers in information security.

Type: Article
Title: Expanding the Gordon-Loeb Model to Cyber-Insurance
Open access status: An open access version is available from UCL Discovery
DOI: 10.1016/j.cose.2021.102533
Publisher version: https://doi.org/10.1016/j.cose.2021.102533
Language: English
Additional information: © 2021 Published by Elsevier Ltd. This is an open access article under the CC BY-NC-ND license (http://creativecommons.org/licenses/by-nc-nd/4.0/)
Keywords: Gordon-Loeb Model, Cybersecurity, Cyber-insurance, Security Investment, Security Economics
UCL classification: UCL
UCL > Provost and Vice Provost Offices > UCL BEAMS
UCL > Provost and Vice Provost Offices > UCL BEAMS > Faculty of Engineering Science
UCL > Provost and Vice Provost Offices > UCL BEAMS > Faculty of Engineering Science > Dept of Computer Science
URI: https://discovery.ucl.ac.uk/id/eprint/10138028
Downloads since deposit
609Downloads
Download activity - last month
Download activity - last 12 months
Downloads by country - last 12 months

Archive Staff Only

View Item View Item