2024 Cyber-Risikomanagement
The module starts with the essential economic basics of cyber risks (as well as "adversarial risks" in general) and gives an overview of the current relevance of these risks for different industries based on empirical studies. In the second part, the economic and information-theoretical modeling of cyber risks based on cyber threat intelligence, attack trees and game-theoretical concepts such as defender attacker games and interdependent security games is presented. The third part conveys the possibilities and limits of an economic assessment of these risks, presents approaches for efficient risk reduction (e.g. "affordable cyber security") and derives requirements for secure digitization strategies. The last part of the module looks at cyber risks from a behavioral-economic and psychological perspective. The role of risk perception, risk awareness and the acceptance of risk-reducing measures by users are considered and analyzed on the basis of experimental studies.