EAGER: Theory and Practice of Risk-Informed Cyber Insurance Policies: Risk Dependency, Risk Aggregation, and Active Threat Landscape
EAGER:风险知情网络保险政策的理论与实践:风险依赖性、风险聚合和主动威胁格局
基本信息
- 批准号:1939006
- 负责人:
- 金额:$ 20万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2019
- 资助国家:美国
- 起止时间:2019-10-01 至 2022-09-30
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
This project aims to tackle some of the most significant challenges facing the design and adoption of risk-informed cyber insurance policies; these challenges include cyber risk interdependence, correlated risk and value-at-risk, and a fast-changing threat landscape. The research has the potential to bring about a paradigm shift in the design of cyber insurance policies so that they are used as effective economic and incentive mechanisms consistent with cyber risk realities; in doing so it also introduces new ways of thinking about cybersecurity in a holistic, risk management context. Consequently, the research has a direct impact on the current practice by cyber insurance carriers and thus the potential to dramatically change the status quo. It has broader impacts on public policy and incentive mechanism design aimed at encouraging the adoption of better cybersecurity frameworks.The research agenda focuses on challenges including risk interdependence, correlated risk and value-at-risk, and a fast-changing threat landscape, and is organized into four thrust areas. The first is on risk-informed insurance policies, which is focused on establishing a solid theoretical foundation for a new family of cyber insurance policies by using contract theory and the modeling of dependent risks. The second is on the modeling of correlated risk and risk aggregation, aimed at quantifying the aggregated risk of a portfolio of insurance policies, by using the notion of conditional value-at-risk (CVaR) developed in the financial engineering field. The third is on the development of a set of stress test benchmarks, with the goal of standardizing how insurance policies should be evaluated in terms of their risk exposure. The fourth is on technology transition and adoption efforts, which includes the education of insurance practitioners, building partnerships and identifying early adopters of our methods as pilots. The research has the potential to bring about a paradigm shift in the design of cyber insurance policies so that they are used as effective economic and incentive mechanisms matched with cyber risk realities, and in introducing new ways of thinking about cybersecurity in a holistic, risk management context.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
该项目旨在解决设计和采用风险知情的网络保险政策所面临的一些最重大的挑战;这些挑战包括网络风险的相互依赖性,相关风险和风险价值,以及快速变化的威胁环境。这项研究有可能带来网络保险政策设计的范式转变,使其成为符合网络风险现实的有效经济和激励机制;在这样做的过程中,它还引入了在整体风险管理背景下思考网络安全的新方法。 因此,这项研究对网络保险运营商的现行做法产生了直接影响,从而有可能极大地改变现状。它对公共政策和旨在鼓励采用更好的网络安全框架的激励机制设计产生了更广泛的影响。研究议程侧重于风险相互依存、相关风险和风险价值以及快速变化的威胁格局等挑战,并分为四个重点领域。第一个是风险知情的保险政策,这是重点建立一个坚实的理论基础,一个新的家庭网络保险政策,通过使用合同理论和相关风险的建模。第二个是关于相关风险和风险聚集的建模,旨在通过使用在金融工程领域发展的条件风险价值(CVaR)的概念来量化保单组合的聚集风险。第三个是制定一套压力测试基准,目的是使评估保险单风险的方法标准化。第四个是技术过渡和采用工作,其中包括保险从业人员的教育,建立伙伴关系,并确定我们的方法作为试点的早期采用者。这项研究有可能带来网络保险政策设计的范式转变,使其成为与网络风险现实相匹配的有效经济和激励机制,并引入全面思考网络安全的新方式,该奖项反映了NSF的法定使命,并被认为值得通过使用基金会的智力价值和更广泛的影响审查标准。
项目成果
期刊论文数量(4)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Will Catastrophic Cyber-Risk Aggregation Thrive in the IoT Age? A Cautionary Economics Tale for (Re-)Insurers and Likes
灾难性网络风险聚合会在物联网时代蓬勃发展吗?
- DOI:10.1145/3446635
- 发表时间:2021
- 期刊:
- 影响因子:2.5
- 作者:Pal, Ranjan;Huang, Ziyuan;Lototsky, Sergey;Yin, Xinlong;Liu, Mingyan;Crowcroft, Jon;Sastry, Nishanth;De, Swades;Nag, Bodhibrata
- 通讯作者:Nag, Bodhibrata
Preference-Based Privacy Markets
基于偏好的隐私市场
- DOI:10.1109/access.2020.3014882
- 发表时间:2020
- 期刊:
- 影响因子:3.9
- 作者:Pal, Ranjan;Crowcroft, Jon;Wang, Yixuan;Li, Yong;De, Swades;Tarkoma, Sasu;Liu, Mingyan;Nag, Bodhibrata;Kumar, Abhishek;Hui, Pan
- 通讯作者:Hui, Pan
Aggregate Cyber-Risk Management in the IoT Age: Cautionary Statistics for (Re)Insurers and Likes
物联网时代的总体网络风险管理:(再)保险公司和类似机构的警示统计数据
- DOI:10.1109/jiot.2020.3039254
- 发表时间:2021
- 期刊:
- 影响因子:10.6
- 作者:Pal, Ranjan;Huang, Ziyuan;Yin, Xinlong;Lototsky, Sergey;De, Swades;Tarkoma, Sasu;Liu, Mingyan;Crowcroft, Jon;Sastry, Nishanth
- 通讯作者:Sastry, Nishanth
Deterrence, Backup, or Insurance: A Game-Theoretic Analysis of Ransomware
威慑、备份或保险:勒索软件的博弈论分析
- DOI:
- 发表时间:2021
- 期刊:
- 影响因子:0
- 作者:Yin, Tongxin;Sarabi, Armin;Liu, Mingyan
- 通讯作者:Liu, Mingyan
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Mingyan Liu其他文献
A theoretical model to predict the rising trajectory of single bubble with zigzagging path in still water
预测静水中锯齿形单个气泡上升轨迹的理论模型
- DOI:
- 发表时间:
2024 - 期刊:
- 影响因子:3.8
- 作者:
Lubin Zhang;Yongli Ma;Mingyan Liu - 通讯作者:
Mingyan Liu
Potentially commercialisable alga, emCoelastrella/em sp. SDEC-28, for stable growth and multiple product applications in pilot-scale seawater-wastewater cultivation
潜在可商业化的藻类,小球藻(Coelastrella)sp. SDEC - 28,用于在中试规模的海水 - 废水养殖中稳定生长以及多种产品应用
- DOI:
10.1016/j.algal.2025.104057 - 发表时间:
2025-07-01 - 期刊:
- 影响因子:4.500
- 作者:
Zhen Xie;Huiying Chen;Meng Ma;Mingyan Liu;Haiyan Pei - 通讯作者:
Haiyan Pei
Gas-liquid mass transfer and reaction characteristics of gas–liquid-solid circulating micro-fluidized bed
- DOI:
10.1016/j.cej.2024.158249 - 发表时间:
2025-01-01 - 期刊:
- 影响因子:
- 作者:
Hao Guo;Yongli Ma;Yan Sun;Mingyan Liu - 通讯作者:
Mingyan Liu
Experimental investigation of collision behavior of fluidized solid particles on the tube wall of a graphite evaporator by vibration signal analysis
- DOI:
10.1016/j.powtec.2016.12.067 - 发表时间:
2017-07-01 - 期刊:
- 影响因子:
- 作者:
Yue Ma;Mingyan Liu;Min An;Xiaoping Xu - 通讯作者:
Xiaoping Xu
Enantiomerization of helicenes on graphene-like surface: a DFT study
- DOI:
10.1007/s00214-025-03184-7 - 发表时间:
2025-04-10 - 期刊:
- 影响因子:1.500
- 作者:
Xunshan Liu;Huimin Duan;Yi Guo;Na Yang;Yongmiao Shen;Mingyan Liu;Chengshuo Shen - 通讯作者:
Chengshuo Shen
Mingyan Liu的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Mingyan Liu', 18)}}的其他基金
CPS:Small:Collaborative Research: Incentivizing Desirable User Behavior in a Class of CPS
CPS:Small:协作研究:在一类 CPS 中激励期望的用户行为
- 批准号:
1739517 - 财政年份:2017
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
TTP: Small: Network-Level Security Posture Assessment and Predictive Analytics: From Theory to Practice
TTP:小:网络级安全态势评估和预测分析:从理论到实践
- 批准号:
1616575 - 财政年份:2016
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
CI-NEW: Collaborative Research: COVE-Computer Vision Exchange for Data, Annotations and Tools
CI-NEW:协作研究:COVE-数据、注释和工具的计算机视觉交换
- 批准号:
1628987 - 财政年份:2016
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
TWC: Small: Understanding Network Level Malicious Activities: Classification, Community Detection and Inference of Security Interdependence
TWC:小:了解网络级恶意活动:分类、社区检测和安全依赖性推断
- 批准号:
1422211 - 财政年份:2014
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
NeTS: Small: Collaborative Research: Playing the Devil's Advocate: The Profit Perspective in Secondary Spectrum Markets
NetS:小型:协作研究:扮演魔鬼代言人:二级频谱市场的利润视角
- 批准号:
1217689 - 财政年份:2012
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
CAREER: Capacity-Driven Design of Large-Scale Wireless Sensor Networks
职业:大规模无线传感器网络的容量驱动设计
- 批准号:
0238035 - 财政年份:2003
- 资助金额:
$ 20万 - 项目类别:
Continuing Grant
相似国自然基金
Research on Quantum Field Theory without a Lagrangian Description
- 批准号:24ZR1403900
- 批准年份:2024
- 资助金额:0.0 万元
- 项目类别:省市级项目
基于isomorph theory研究尘埃等离子体物理量的微观动力学机制
- 批准号:12247163
- 批准年份:2022
- 资助金额:18.00 万元
- 项目类别:专项项目
Toward a general theory of intermittent aeolian and fluvial nonsuspended sediment transport
- 批准号:
- 批准年份:2022
- 资助金额:55 万元
- 项目类别:
英文专著《FRACTIONAL INTEGRALS AND DERIVATIVES: Theory and Applications》的翻译
- 批准号:12126512
- 批准年份:2021
- 资助金额:12.0 万元
- 项目类别:数学天元基金项目
基于Restriction-Centered Theory的自然语言模糊语义理论研究及应用
- 批准号:61671064
- 批准年份:2016
- 资助金额:65.0 万元
- 项目类别:面上项目
相似海外基金
Theory use in social care practice: improving implementation and outcomes
社会关怀实践中的理论运用:改进实施和结果
- 批准号:
DE240100154 - 财政年份:2024
- 资助金额:
$ 20万 - 项目类别:
Discovery Early Career Researcher Award
CAREER: Theory and Practice of Privacy-Utility Tradeoffs in Enterprise Data Sharing
职业:企业数据共享中隐私与效用权衡的理论与实践
- 批准号:
2338772 - 财政年份:2024
- 资助金额:
$ 20万 - 项目类别:
Continuing Grant
Bridging the gap between rockfall theory and engineering practice
弥合落石理论与工程实践之间的差距
- 批准号:
IE230100410 - 财政年份:2023
- 资助金额:
$ 20万 - 项目类别:
Early Career Industry Fellowships
Construction of a teacher education platform linking theory and practice with physical education lesson study
理论联系实际、体育课学的教师教育平台构建
- 批准号:
23H00971 - 财政年份:2023
- 资助金额:
$ 20万 - 项目类别:
Grant-in-Aid for Scientific Research (B)
Collaborative Research: Advances in the Theory and Practice of Non-Euclidean Statistics
合作研究:非欧几里得统计理论与实践的进展
- 批准号:
2311058 - 财政年份:2023
- 资助金额:
$ 20万 - 项目类别:
Continuing Grant
CAREER: Parallel Algorithms: Theory for Practice
职业:并行算法:理论实践
- 批准号:
2238358 - 财政年份:2023
- 资助金额:
$ 20万 - 项目类别:
Continuing Grant
A Theory of Integration in Crossdisciplinary Research and Practice
跨学科研究与实践的整合理论
- 批准号:
2318442 - 财政年份:2023
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
Development of Learning Materials Connecting Theory and Practice for Teachers to Improve Student Engagement
为教师开发连接理论与实践的学习材料以提高学生的参与度
- 批准号:
23K02731 - 财政年份:2023
- 资助金额:
$ 20万 - 项目类别:
Grant-in-Aid for Scientific Research (C)
Research on theory and practice of trust in educational relationships
教育关系信任理论与实践研究
- 批准号:
23K02159 - 财政年份:2023
- 资助金额:
$ 20万 - 项目类别:
Grant-in-Aid for Scientific Research (C)
Theory and Practice of Language Awareness Movement in United Kingdom
英国语言意识运动的理论与实践
- 批准号:
23K18923 - 财政年份:2023
- 资助金额:
$ 20万 - 项目类别:
Grant-in-Aid for Research Activity Start-up