Economics of Security - Emergence of Economics of Security

Emergence of Economics of Security

National security is the canonical public good. The economic status of information security came to the intellectual fore around 2000. As is the case with innovations it arose simultaneously in multiple venues.

In 2000, Ross Anderson wrote, Why Computer Security is Hard. Anderson explained that a significant difficulty in optimal development of security technology is that incentives must be aligned with the technology to enable rational adoption. Thus, economic insights should be integrated into technical design. A security technology should enable the party at risk to invest to limit that risk. Otherwise, the designers are simply counting on altruism for adoption and diffusion. Many consider this publication the birth of economics of security.

Also in 2000 at Harvard, Camp at the School of Government and Wolfram in the Department of Economics argued that security is not a public good but rather each extant vulnerabilities has an associated negative externality value. Vulnerabilities were defined in this work as tradable goods. Six years later, iDEFENSE, ZDI and Mozilla have extant markets for vulnerabilities.

In 2000, the scientists at the Computer Emergency Response Team at Carnegie Mellon University proposed an early mechanism for risk assessment. The Hierarchical Holographic Model provided the first multi-faceted evaluation tool to guide security investments using the science of risk. Since that time, CERT has developed a suite of systematic mechanism for organizations to use in risk evaluations, depending on the size and expertise of the organization: OCTAVE. The study of computer security as an investment in risk avoidance has become standard practice.

In 2001 in an unrelated development, Larry Gordon and Marty Leob published A framework on using information security as a response to competitor analysis systems. These professor of Maryland's Smith School of Business examined the strategic use of security information from a classical business perspective.

The authors came together to develop and expand a series of flagship events under the name Worksop on the Economics of Information Security.

Read more about this topic:  Economics Of Security

Famous quotes containing the words emergence of, emergence, economics and/or security:

    The failures of the press have contributed immensely to the emergence of a talk-show nation, in which public discourse is reduced to ranting and raving and posturing. We now have a mainstream press whose news agenda is increasingly influenced by this netherworld.
    Carl Bernstein (b. 1944)

    The failures of the press have contributed immensely to the emergence of a talk-show nation, in which public discourse is reduced to ranting and raving and posturing. We now have a mainstream press whose news agenda is increasingly influenced by this netherworld.
    Carl Bernstein (b. 1944)

    The animals that depend on instinct have an inherent knowledge of the laws of economics and of how to apply them; Man, with his powers of reason, has reduced economics to the level of a farce which is at once funnier and more tragic than Tobacco Road.
    James Thurber (1894–1961)

    A well-regulated militia being necessary to the security of a free State, the right of the people to keep and bear arms shall not be infringed.
    U.S. Constitution, Second Amendment.