Value creation and Return On Security Investments (ROSI)
نویسندگان
چکیده
This paper investigates if IT security is as a part of value creation. The first part of the commentary focuses on the current theoretical conditions for IT security as a part of value creation. Different Return On Security Investment (ROSI) models are studied to investigate if they can calculate value creation with regard either to efficiency or to effectiveness. The second part of the paper investigates empirical evidence of a ROSI or any indication of a shareholder value perspective on IT security in three large, listed companies from different business segments. What they have in common is their first priority: value creation. The commentary begins by describing the “Productivity Paradox”. It is followed by the most well-known ROSI models. Then, it explains the models applicability in value creation. Next, the three companies in the study are investigated. In the following section conclusions are drawn. Finally, the results of the research are discussed.
منابع مشابه
The Economic Impact of Information Security Breaches: Firm Value and Intra-industry Effects
IT managers often struggle to justify investments in information security. In addition to standard quantitative analyses such as Return on Security Investment (ROSI), executive management may also want to know what the effect of potential security breaches would be on the market value of a publicly-traded firm. This study attempts to shed light on the issue by examining the impact of informatio...
متن کاملReturn on Security Investments - Design Principles of Measurement Systems Based on Capital Budgeting
IT-security has become a key topic for nearly every company nowadays. To safeguard security, investments in technical and organizational infrastructures have to be made. The efficiency and effectiveness of these investments can often be hardly determined due to the invisibility of their benefits. When implementing IT-security measures, the predicted outcome, e.g. prevented losses, is uncertain ...
متن کاملInformation Asset Valuation Method for Information Technology Security Risk Assessment
The information security strategic plan is necessarily comprehensive, including business processes, people, and physical infrastructure, as well as the information system. The Security risk evaluation needs the calculating asset value to predict the impact and consequence of security incidents. The return on security investment (ROSI) is defining the value for all invested in terms of security ...
متن کاملReturn on Scientific Investment - RoSI: a PMO dynamical index proposal for scientific projects performance evaluation and management.
OBJECTIVE To propose a measure (index) of expected risks to evaluate and follow up the performance analysis of research projects involving financial and adequate structure parameters for its development. METHODS A ranking of acceptable results regarding research projects with complex variables was used as an index to gauge a project performance. In order to implement this method the ulcer ind...
متن کاملUse of Equity Market Value for explaining Cash Flow Return on Investment (CFROI) and Created Shareholder Value (CSV) Evidence from Automotive Industry Tehran Stock Exchange
The concept of Value Creation is gaining momentum in Iran under the open regime. Iranian Companies are geared to understand and act upon the concept of Shareholder Value to stay competitive in this unfathomable and volatile environment. Most executives today understand that, the need to create shareholder value is paramount and the world’s most competitive management teams are responding to the...
متن کامل