Building supply chain resilience to cyber risks: a dynamic capabilities perspective
作者:Michael Herburger, Andreas Wieland, Carina Hochstrasser · 发表于:Supply Chain Management An International Journal · 年份:2024 · DOI:10.1108/scm-01-2023-0016 · 被引用次数:47 · 研究领域:Supply Chain Resilience and Risk Management、Quality and Supply Management、Sustainable Supply Chain Management
Purpose Disruptive events caused by cyber incidents, such as supply chain (SC) cyber incidents, can affect firms’ SC operations on a large scale, causing disruptions in material, information and financial flows and impacting the availability, integrity and confidentiality of SC assets. While SC resilience (SCRES) research has received much attention in recent years, the purpose of this study is to investigate specific capabilities for building SCRES to cyber risks. Based on a nuanced understanding of SC cyber risk characteristics, this study explores how to build SC cyber resilience (SCCR) using the perspective of dynamic capability (DC) theory. Design/methodology/approach Based on 79 in-depth interviews, this qualitative study examines 28 firms representing 4 SCs in Central Europe. The researchers interpret data from semistructured interviews and secondary data using the DC perspective, which covers sensing, seizing and transforming. Findings The authors identify SCRES capabilities, in general, and SCCR-specific capabilities that form the basis for the realignment of DCs for addressing cyber risks in SCs. The authors argue that SCRES capabilities should, in general, be combined with specific capabilities for SCCR to deal with SC cyber risks. Based on these findings, 10 propositions for future research are provided. Practical implications Practitioners should collaborate specifically to address cyber threats and risks in SCs, integrate new SC partners and use new approaches. ...