JOURNAL OF APPLIED BUSINESS AND ECONOMICS
Security Risk Governance: A Critical Component to Managing Security Risk
Author(s): Brian Allen, Timothy Kelly, Rachelle Loyear, Amy Poole, Adegbenro Awojulu,
Andrew Kmetetz, Michel Rakotomavo, Zhuoran Wang, Heli Xu, Mengzhu Xu, Huaijin Yuan
Citation: Brian Allen, Timothy Kelly, Rachelle Loyear, Amy Poole, Adegbenro Awojulu, Andrew Kmetetz, Michel Rakotomavo, Zhuoran Wang, Heli Xu, Mengzhu Xu, Huaijin Yuan, (2018) "Security Risk Governance: A Critical Component to Managing Security Risk," Journal of Applied Business and Economics, Vol. 20, Iss.1, pp. 132-146
Article Type: Research paper
Publisher: North American Business Press
Abstract:
This paper proposes that security risk be managed at the same corporate level and with the same focus as financial risk, regulatory risk, or operational risk. It reviews related corporate governance and risk management concepts and shows applications into a variety of case studies from real businesses across the traditional risk management footprint. Using the framework of enterprise security risk management, it illustrates how security risk can be managed as any other type of risk and suggests some oversight and governance models for the security risks that could impact and damage business assets and functions.