Search engine for discovering works of Art, research articles, and books related to Art and Culture
ShareThis
Javascript must be enabled to continue!

Integrating Cybersecurity Risk Model to the Bug Bounty Program

View through CrossRef
Bug bounty program is a business activity in which firms invite white-hat hackers around the world to identify vulnerabilities in their cyber systems. The paper proposes a model to quantify the normal cybersecurity spending with respect to the importance of information systems. An upper limit of normal cybersecurity spending is provided, which can be described as a percent of the total value of reports received from the bug bounty program. Moreover, this paper presents quantitative analytical modeling for minimizing the total cybersecurity cost of a firm by optimizing its cybersecurity budget plan after implementing the bug bounty program. With the two models, firms can determine not only the amount of cybersecurity spending that should be input to an information system, but also the optimal spending allocation among the segments of the information system. Lastly, this paper analyzes requirements that make implementing bug bounty program a better choice.
Title: Integrating Cybersecurity Risk Model to the Bug Bounty Program
Description:
Bug bounty program is a business activity in which firms invite white-hat hackers around the world to identify vulnerabilities in their cyber systems.
The paper proposes a model to quantify the normal cybersecurity spending with respect to the importance of information systems.
An upper limit of normal cybersecurity spending is provided, which can be described as a percent of the total value of reports received from the bug bounty program.
Moreover, this paper presents quantitative analytical modeling for minimizing the total cybersecurity cost of a firm by optimizing its cybersecurity budget plan after implementing the bug bounty program.
With the two models, firms can determine not only the amount of cybersecurity spending that should be input to an information system, but also the optimal spending allocation among the segments of the information system.
Lastly, this paper analyzes requirements that make implementing bug bounty program a better choice.

Related Results

Cybersecurity and Organisational Performance – the Interplay
Cybersecurity and Organisational Performance – the Interplay
The interplay between cybersecurity and organisational performance is multifaceted in nature, as it is related to how cybersecurity impacts and is impacted by various organisationa...
Improving the Quality of Bug Data in Open Source Software Repositories
Improving the Quality of Bug Data in Open Source Software Repositories
Context: Researchers have increasingly recognised the benefit of mining software repositories to extract information. Although, the development logs of software projects, contained...
Bug Report Summarization by Using Swarm Intelligence Approaches
Bug Report Summarization by Using Swarm Intelligence Approaches
Background: Bug reports are considered as a reference document, during the maintenance phase of the software development process. The developer's counsel them at whatever point the...
Effective Bug Triage With Software Reliability
Effective Bug Triage With Software Reliability
Programming associations spend in excess of 45 percent of cost in overseeing programming bugs. An inevitable progress of settling bugs is bug triage, which wants to precisely dole ...
Bug Tracking System to Reduce Duplicate Bug Reports Using Cost-Aware Algorithm
Bug Tracking System to Reduce Duplicate Bug Reports Using Cost-Aware Algorithm
Software engineers rely heavily on bug-tracking solutions to help direct their maintenance efforts. In certain projects, as many as quarters of all bug reports are duplicates, redu...
Cybersecurity Knowledge Deterioration and the role of Gamification Intervention
Cybersecurity Knowledge Deterioration and the role of Gamification Intervention
Cybersecurity is becoming an overly critical issue in contemporary times. Cyberspace safety is declining, and this covers all categories of persons, businesses, institutions, and e...
Cultivating self-efficacy to empower professionals’ re-up skilling in cybersecurity
Cultivating self-efficacy to empower professionals’ re-up skilling in cybersecurity
Purpose The accelerated digital transformation and the growing emphasis on privacy, safety and security present ongoing challenges for cybersecurity experts. Alongside these challe...
Cybersecurity Startup Founders in Greater Washington, DC: Prior Experience Required
Cybersecurity Startup Founders in Greater Washington, DC: Prior Experience Required
The Greater Washington region is one of three leading cybersecurity industry clusters in the world. The proximity of this region to federal agencies, particularly in national secu...

Back to Top