Reference Hub9
How Do Investors Perceive the Materiality of Data Security Incidents

How Do Investors Perceive the Materiality of Data Security Incidents

Ahmad H. Juma'h, Yazan Alnsour
Copyright: © 2021 |Volume: 29 |Issue: 6 |Pages: 32
ISSN: 1062-7375|EISSN: 1533-7995|EISBN13: 9781799872627|DOI: 10.4018/JGIM.20211101.oa4
Cite Article Cite Article

MLA

Juma'h, Ahmad H., and Yazan Alnsour. "How Do Investors Perceive the Materiality of Data Security Incidents." JGIM vol.29, no.6 2021: pp.1-32. http://doi.org/10.4018/JGIM.20211101.oa4

APA

Juma'h, A. H. & Alnsour, Y. (2021). How Do Investors Perceive the Materiality of Data Security Incidents. Journal of Global Information Management (JGIM), 29(6), 1-32. http://doi.org/10.4018/JGIM.20211101.oa4

Chicago

Juma'h, Ahmad H., and Yazan Alnsour. "How Do Investors Perceive the Materiality of Data Security Incidents," Journal of Global Information Management (JGIM) 29, no.6: 1-32. http://doi.org/10.4018/JGIM.20211101.oa4

Export Reference

Mendeley
Favorite Full-Issue Download

Abstract

Data security incidents are continually increasing; hackers, governments, and other actors increasingly attempt to gain unauthorized access to confidential data. Information Systems (IS) users are becoming more vulnerable to the risks of data breaches. Many stakeholders perceive cybersecurity incidents as indicators of firms' operational and technological internal deficiencies. Previous research has revealed that investors react negatively to data breaches, yet little is known about investors' reactions to material data security incidents. Using a sample of 232 data security incidents for 132 publicly traded companies in the United States, we applied an event study methodology to discern investors' reactions to material versus immaterial incidents. We also use multivariate regression and time-to-event analysis to examine what determines the degree of investors' reactions, considering several intervals around the event day. Our results show that investors perceive material data security incidents as a deficiency of breached companies in comparison to immaterial incidents.