Supply Chain Cybersecurity and Small and Medium-Sized Enterprises (SMEs): Exploring Shortcomings in Third Party Risk Management of SMEs

dc.contributor.authorKwong, Jillian
dc.contributor.authorPearlson, Keri
dc.date.accessioned2023-12-26T18:50:48Z
dc.date.available2023-12-26T18:50:48Z
dc.date.issued2024-01-03
dc.identifier.doihttps://doi.org/10.24251/HICSS.2024.797
dc.identifier.isbn978-0-9981331-7-1
dc.identifier.othere5b406a4-c1ef-46c7-a798-46a907b9f363
dc.identifier.urihttps://hdl.handle.net/10125/107183
dc.language.isoeng
dc.relation.ispartofProceedings of the 57th Hawaii International Conference on System Sciences
dc.rightsAttribution-NonCommercial-NoDerivatives 4.0 International
dc.rights.urihttps://creativecommons.org/licenses/by-nc-nd/4.0/
dc.subjectPractice-based IS Research
dc.subjectcyber risk management
dc.subjectcybersecurity
dc.subjectsmall and medium-sized enterprises
dc.subjectsupply chains
dc.subjectthird party risk assessments
dc.titleSupply Chain Cybersecurity and Small and Medium-Sized Enterprises (SMEs): Exploring Shortcomings in Third Party Risk Management of SMEs
dc.typeConference Paper
dc.type.dcmiText
dcterms.abstractSmall and medium-sized enterprises (SMEs) have long been known to be a weak link in supply chain cybersecurity. Despite their crucial role in the global supply chain, SMEs and their struggle to increase cyber resiliency and improve their defenses is understudied in academic literature. This paper uses qualitative research methods to conduct an empirical study of the challenges SMEs encounter when participating in third party cybersecurity risk assessments. Using interviews with cybersecurity and supply chain practitioners, this study provides an overview of four major risk assessment methods (i.e., questionnaires, audits and certifications, security rating services, and direct testing) and the problems that arise when companies apply tools designed for large corporations to SMEs. Results discuss how and why traditional methods fail and offers insights on how to improve third party risk of SMEs moving forward.
dcterms.extent9 pages
prism.startingpage6656

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
0651.pdf
Size:
403.08 KB
Format:
Adobe Portable Document Format