Blessed Are The Lawyers, For They Shall Inherit Cybersecurity


연구 분야: Safety



학회: NSPW '21: Proceedings of the 2021 New Security Paradigms Workshop


초록

This paper considers which types of evidence guide cybersecurity decisions. We argue that the “InfoSec belongs to the quants” paradigm will not be realised despite its normative appeal. In terms of progress to date, we find few empirical results that can guide risk mitigation decisions. We suggest the knowledge base about quantitative cybersecurity is continually eroded by increasing complexity, technological flux, and strategic adversaries. Given these secular forces will not abate any time soon, we argue that legal reasoning will increasingly influence cybersecurity decisions relative to technical and quantitative reasoning. The law as a system of social control bristles with ambiguity and so legal mechanisms exist to resolve uncertainties over time. Actors with greater claims to authority over this knowledge base, predominantly lawyers, will accrue decision making power within organisations. We speculate about the downstream impacts of lawyers inheriting cybersecurity, and also sketch the limits of the paradigm’s explanatory power.


Author Profile
Daniel W Woods

University of Innsbruck Austria

Austria
Author Profile
Aaron Ceross

University of Oxford United Kingdom

United Kingdom

📄 논문 정보

발행 연도 2021년
인용수 6
출판 국가 United Kingdom, Austria
사이트 ACM
좋아요 수 0

연관 논문 목록 (303건)