2018
DOI: 10.1057/s41288-018-0081-8
|View full text |Cite
|
Sign up to set email alerts
|

Emerging IT Risks: Insights from German Banking

Abstract: How do German banks manage the emerging risks from IT innovations, e.g. cyber risk? With a focus on process, roles and responsibilities, field data from ten banks participating in the 2014 ECB stress test were collected by interviewing IT managers, risk managers and external experts. Current procedures for handling emerging risks in German banks were identified from the interviews and analysed, guided by the extant literature.A clear gap was found between Enterprise Risk Management (ERM) as a general approach … Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1

Citation Types

0
3
0

Year Published

2018
2018
2022
2022

Publication Types

Select...
7

Relationship

0
7

Authors

Journals

citations
Cited by 11 publications
(3 citation statements)
references
References 65 publications
0
3
0
Order By: Relevance
“…While most research has focused on the technical side of cybersecurity, expanding work on socioeconomic risk factors, process, and people would be beneficial. Ashby et al (2018) find that the typical ERM approach of estimating likelihood and consequence is not effective for emerging risks, such as cyber threats. They propose that ERM needs to deal with such risks by “reducing uncertainty through knowledge acquisition” from a diverse group of stakeholders with a wide array of expertise.…”
Section: Future Research: Gaps In Cyber Risk Researchmentioning
confidence: 99%
“…While most research has focused on the technical side of cybersecurity, expanding work on socioeconomic risk factors, process, and people would be beneficial. Ashby et al (2018) find that the typical ERM approach of estimating likelihood and consequence is not effective for emerging risks, such as cyber threats. They propose that ERM needs to deal with such risks by “reducing uncertainty through knowledge acquisition” from a diverse group of stakeholders with a wide array of expertise.…”
Section: Future Research: Gaps In Cyber Risk Researchmentioning
confidence: 99%
“…perception, knowledge, attitude) on the quality of the management of emerging risks like, cyber risk (e.g. Pfleeger and Caputo, 2012;Ashby et al, 2018;de Smidt and Botzen, 2018;Nam, 2019) or reputation risk (Gatzert and Schmit, 2016). We suggest intensified (empirical) research on the relationship between cyber security culture and the maturity of cyber risk management, which would be of high relevance for both academics and practitioners like insurance companies, risk experts and governmental agencies who have an interest in improving the cyber security position of SMEs.…”
Section: Introductionmentioning
confidence: 96%
“…de Smidt and Botzen (2018) and Nam (2019) show the effects of trust and worry on cyber risk management decisions. Finally, Ashby et al (2018) note that risk management is frequently focused on quantifying known risks, while not strongly focusing on upcoming risks. Overall, the high complexity of the underlying decisions may lead to cognitive strain (i.e.…”
Section: Introductionmentioning
confidence: 99%