Skip to main content

2020 | OriginalPaper | Buchkapitel

On the Importance of Agility, Transparency, and Positive Reinforcement in Cyber Incident Crisis Communication

verfasst von : Tomomi Aoyama, Atsushi Sato, Giuseppe Lisi, Kenji Watanabe

Erschienen in: Critical Information Infrastructures Security

Verlag: Springer International Publishing

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

Cyber incident crisis management protocols often overlook the importance of crisis communication. This paper reviews the crisis communication literature to define explicit communication strategies for each stage of a cyber incident. We applied the proposed model to analyze the Norsk Hydro case: a Norwegian aluminum and renewable energy company halted operations due to a ransomware attack. By combining traditional communication outlets and social media, the company kept high transparency of their recovery operation, with frequent (i.e., agile) updates about the cyber incident. The positive presence of Norsk Hydro on social media allowed them to manage reputation throughout the process. Employees’ creativity and loyalty were crucial in the recovery process, and it was promptly publicized globally. This empowered other employees at other branches to act creatively and inspired the community. We conclude the study by suggesting the agility, transparency, and positive reinforcement were the success factor of this crisis communication operation.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literatur
4.
Zurück zum Zitat Coombs, W.T.: Ongoing Crisis Communication: Planning, Managing, and Responding. Sage Publications, California (2014) Coombs, W.T.: Ongoing Crisis Communication: Planning, Managing, and Responding. Sage Publications, California (2014)
5.
Zurück zum Zitat Cornelissen, J.P.: Corporate communication. The International Encyclopedia of Communication (2008) Cornelissen, J.P.: Corporate communication. The International Encyclopedia of Communication (2008)
6.
Zurück zum Zitat Goodwin, C., et al.: A framework for cybersecurity information sharing and risk reduction. Microsoft (2015) Goodwin, C., et al.: A framework for cybersecurity information sharing and risk reduction. Microsoft (2015)
7.
Zurück zum Zitat Haass, J.C., Ahn, G.J., Grimmelmann, F.: Actra: a case study for threat information sharing. In: Proceedings of the 2nd ACM Workshop on Information Sharing and Collaborative Security, pp. 23–26. ACM (2015) Haass, J.C., Ahn, G.J., Grimmelmann, F.: Actra: a case study for threat information sharing. In: Proceedings of the 2nd ACM Workshop on Information Sharing and Collaborative Security, pp. 23–26. ACM (2015)
10.
Zurück zum Zitat Kulikova, O., Heil, R., van den Berg, J., Pieters, W.: Cyber crisis management: a decision-support framework for disclosing security incident information. In: 2012 International Conference on Cyber Security, pp. 103–112. IEEE (2012) Kulikova, O., Heil, R., van den Berg, J., Pieters, W.: Cyber crisis management: a decision-support framework for disclosing security incident information. In: 2012 International Conference on Cyber Security, pp. 103–112. IEEE (2012)
12.
Zurück zum Zitat Steelman, T.A., McCaffrey, S.: Best practices in risk and crisis communication: implications for natural hazards management. Nat. Hazards 65(1), 683–705 (2013)CrossRef Steelman, T.A., McCaffrey, S.: Best practices in risk and crisis communication: implications for natural hazards management. Nat. Hazards 65(1), 683–705 (2013)CrossRef
13.
Zurück zum Zitat Sveen, F.O., Sarriegi, J.M., Gonzalez, J.J.: The role of incident reporting in reducing information security risk. In: Twenty Seventh International Conference of the System Dynamics Society. The System Dynamics Society (2009) Sveen, F.O., Sarriegi, J.M., Gonzalez, J.J.: The role of incident reporting in reducing information security risk. In: Twenty Seventh International Conference of the System Dynamics Society. The System Dynamics Society (2009)
14.
Zurück zum Zitat Van Veelen, B., Storms, P., van Aart, C.: Effective and efficient coordination strategies for agile crisis response organizations. In: Proceedings of ISCRAM 2006 (2006) Van Veelen, B., Storms, P., van Aart, C.: Effective and efficient coordination strategies for agile crisis response organizations. In: Proceedings of ISCRAM 2006 (2006)
15.
Zurück zum Zitat Veil, S.R., Buehner, T., Palenchar, M.J.: A work-in-process literature review: incorporating social media in risk and crisis communication. J. Contingencies Crisis Manage. 19(2), 110–122 (2011)CrossRef Veil, S.R., Buehner, T., Palenchar, M.J.: A work-in-process literature review: incorporating social media in risk and crisis communication. J. Contingencies Crisis Manage. 19(2), 110–122 (2011)CrossRef
16.
Zurück zum Zitat Von Solms, R., Van Niekerk, J.: From information security to cyber security. Comput. Secur. 38, 97–102 (2013)CrossRef Von Solms, R., Van Niekerk, J.: From information security to cyber security. Comput. Secur. 38, 97–102 (2013)CrossRef
17.
Zurück zum Zitat Weiner, D.: Crisis communications: managing corporate reputation in the court of public opinion. Ivey Bus. J. 70(4), 1–6 (2006) Weiner, D.: Crisis communications: managing corporate reputation in the court of public opinion. Ivey Bus. J. 70(4), 1–6 (2006)
Metadaten
Titel
On the Importance of Agility, Transparency, and Positive Reinforcement in Cyber Incident Crisis Communication
verfasst von
Tomomi Aoyama
Atsushi Sato
Giuseppe Lisi
Kenji Watanabe
Copyright-Jahr
2020
DOI
https://doi.org/10.1007/978-3-030-37670-3_13