Emerging IT Risks: Insights from German Banking

8Citations
Citations of this article
59Readers
Mendeley users who have this article in their library.
Get full text

Abstract

How do German banks manage the emerging risks stemming from IT innovations such as cyber risk? With a focus on process, roles and responsibilities, field data from ten banks participating in the 2014 ECB stress test were collected by interviewing IT managers, risk managers and external experts. Current procedures for handling emerging risks in German banks were identified from the interviews and analysed, guided by the extant literature. A clear gap was found between enterprise risk management (ERM) as a general approach to risks threatening firms' objectives and ERM's neglect of emerging risks, such as those associated with IT innovations. The findings suggest that ERM should be extended towards the collection and sharing of knowledge to allow for an initial understanding and description of emerging risks, as opposed to the traditional ERM approach involving estimates of impact and probability. For example, as cyber risks emerge from an IT innovation, the focus may need to switch towards reducing uncertainty through knowledge acquisition. Since individual managers seldom possess all relevant knowledge of an IT innovation, various stakeholders may need to be involved to exploit their expertise.

Cite

CITATION STYLE

APA

Ashby, S., Buck, T., Nöth-Zahn, S., & Peisl, T. (2018). Emerging IT Risks: Insights from German Banking. Geneva Papers on Risk and Insurance: Issues and Practice, 43(2), 180–207. https://doi.org/10.1057/s41288-018-0081-8

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free