Security And Risk Management in Supply Chains
نویسندگان
چکیده
The reduction of risk constitutes a pillar of success in business. A crucial concern in any business activity includes the variable of risk due to security threats in information systems. Risks increase as the business increases in success and profit. Risk Management becomes a crucial part of every successful business model to deal with uncertain and risky socio-economic changes. Security concerns are a major player in minimizing risk in businesses by protecting its intangible resources and knowledge. The emergence of supply chains which coordinate organizations, people, activities, information and resources, dramatically increases risk crises. Efforts have resulted in process reference models, such as the Supply Chain Operations Reference (SCOR) which measures total supply chain performance. Although the SCOR model is designed to support supply chains of various complexities across multiple industries, it does not provide a basis for Risk Management in terms of the security of exchanged information and access control. Quantifying security risks in supply chains becomes a central challenge to be considered in risk management. This paper attempts to propose a framework to bridge the gap between security concerns and risk management in a supply chain, typically, the SCOR model. The framework extends risk management with security awareness by proposing roles for each process in SCOR. Its underlying approach focuses on the types of threats in SCOR implementation projects and applies empirical benchmarks to measure risks in processes with respect to the security-oriented framework.
منابع مشابه
Identification of Disruptions and Associated Resilience Strategies in Blood Supply Chain Using a New Combined Approach
INTRODUCTION: Supply chains face various disruptions from human-made to natural disasters preventing proper flow of materials and products. This problem is more important in the healthcare supply chains, especially the blood supply chains, in which human lives are at risk. Making the supply chains resilient, recently addressed by managers and researchers, can be a good way to tackle them. This ...
متن کاملPrioritization of Supply Chain Risks in Automotive Industry
Supply chains are constantly exposed to various risks. An incident or uncertain event, which has positive or negative effect on the objectives of a project, is called a risk. According to this identification, analysis and prioritization of risks may have a significant role in the success of the project. The purpose of risk management is to reduce the risks of non-achievement of these object...
متن کاملPrioritization of Supply Chain Risks in Automotive Industry
Supply chains are constantly exposed to various risks. An incident or uncertain event, which has positive or negative effect on the objectives of a project, is called a risk. According to this identification, analysis and prioritization of risks may have a significant role in the success of the project. The purpose of risk management is to reduce the risks of non-achievement of these object...
متن کاملCybersecurity Information Sharing: a Framework for Sustainable Information Security Management in UK SME Supply Chains
UK small to medium sized enterprises (SMEs) are suffering increasing levels of cybersecurity breaches and are a major point of vulnerability in the supply chain networks in which they participate. A key factor for achieving optimal security levels within supply chains is the management and sharing of cybersecurity information associated with specific metrics. Such information sharing schemes am...
متن کاملDistribution Design of Two Rival Decenteralized Supply Chains: a Two-person Nonzero Sum Game Theory Approach
We consider competition between two decentralized supply chains network under demand uncertainty. Each chain consists of one risk-averse manufacturer and a group of risk-averse retailers. These two chains present substitutable products to the geographical dispensed markets. The markets’ demands are contingent upon prices, service levels, and advertising efforts of two supply chains. We formulat...
متن کامل