Skip to main content

On the Importance of Agility, Transparency, and Positive Reinforcement in Cyber Incident Crisis Communication

  • Conference paper
  • First Online:
Critical Information Infrastructures Security (CRITIS 2019)

Part of the book series: Lecture Notes in Computer Science ((LNSC,volume 11777))

Abstract

Cyber incident crisis management protocols often overlook the importance of crisis communication. This paper reviews the crisis communication literature to define explicit communication strategies for each stage of a cyber incident. We applied the proposed model to analyze the Norsk Hydro case: a Norwegian aluminum and renewable energy company halted operations due to a ransomware attack. By combining traditional communication outlets and social media, the company kept high transparency of their recovery operation, with frequent (i.e., agile) updates about the cyber incident. The positive presence of Norsk Hydro on social media allowed them to manage reputation throughout the process. Employees’ creativity and loyalty were crucial in the recovery process, and it was promptly publicized globally. This empowered other employees at other branches to act creatively and inspired the community. We conclude the study by suggesting the agility, transparency, and positive reinforcement were the success factor of this crisis communication operation.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 39.99
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. Employees find creative solutions in response to cyber-attack, April 2019. https://www.hydro.com/en-NO/about-hydro/stories-by-hydro/employees-find-creative-solutions-in-response-to-cyber-attack/

  2. Operational and market update q12019, April 2019. https://www.hydro.com/Document/Index?name=Hydro%20Q1-2019%20Update&id=42133

  3. Cimpanu, C.: Protonmail ddos attacks are a case study of what happens when you mock attackers, June 2018. https://www.bleepingcomputer.com/news/security/protonmail-ddos-attacks-are-a-case-study-of-what-happens-when-you-mock-attackers/

  4. Coombs, W.T.: Ongoing Crisis Communication: Planning, Managing, and Responding. Sage Publications, California (2014)

    Google Scholar 

  5. Cornelissen, J.P.: Corporate communication. The International Encyclopedia of Communication (2008)

    Google Scholar 

  6. Goodwin, C., et al.: A framework for cybersecurity information sharing and risk reduction. Microsoft (2015)

    Google Scholar 

  7. Haass, J.C., Ahn, G.J., Grimmelmann, F.: Actra: a case study for threat information sharing. In: Proceedings of the 2nd ACM Workshop on Information Sharing and Collaborative Security, pp. 23–26. ACM (2015)

    Google Scholar 

  8. Hydro, N.: Cyber attack on hydro magnor, April 2019. https://www.youtube.com/watch?v=S-ZlVuM0we0

  9. Hydro, N.: The cyber attack rescue operation in hydro toulouse, April 2019. https://www.youtube.com/watch?v=o6eEN0mUakM

  10. Kulikova, O., Heil, R., van den Berg, J., Pieters, W.: Cyber crisis management: a decision-support framework for disclosing security incident information. In: 2012 International Conference on Cyber Security, pp. 103–112. IEEE (2012)

    Google Scholar 

  11. ProtonMail: a brief update regarding ongoing ddos incidents, July 2018. https://protonmail.com/blog/a-brief-update-regarding-ongoing-ddos-incidents/

  12. Steelman, T.A., McCaffrey, S.: Best practices in risk and crisis communication: implications for natural hazards management. Nat. Hazards 65(1), 683–705 (2013)

    Article  Google Scholar 

  13. Sveen, F.O., Sarriegi, J.M., Gonzalez, J.J.: The role of incident reporting in reducing information security risk. In: Twenty Seventh International Conference of the System Dynamics Society. The System Dynamics Society (2009)

    Google Scholar 

  14. Van Veelen, B., Storms, P., van Aart, C.: Effective and efficient coordination strategies for agile crisis response organizations. In: Proceedings of ISCRAM 2006 (2006)

    Google Scholar 

  15. Veil, S.R., Buehner, T., Palenchar, M.J.: A work-in-process literature review: incorporating social media in risk and crisis communication. J. Contingencies Crisis Manage. 19(2), 110–122 (2011)

    Article  Google Scholar 

  16. Von Solms, R., Van Niekerk, J.: From information security to cyber security. Comput. Secur. 38, 97–102 (2013)

    Article  Google Scholar 

  17. Weiner, D.: Crisis communications: managing corporate reputation in the court of public opinion. Ivey Bus. J. 70(4), 1–6 (2006)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Tomomi Aoyama .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2020 Springer Nature Switzerland AG

About this paper

Check for updates. Verify currency and authenticity via CrossMark

Cite this paper

Aoyama, T., Sato, A., Lisi, G., Watanabe, K. (2020). On the Importance of Agility, Transparency, and Positive Reinforcement in Cyber Incident Crisis Communication. In: Nadjm-Tehrani, S. (eds) Critical Information Infrastructures Security. CRITIS 2019. Lecture Notes in Computer Science(), vol 11777. Springer, Cham. https://doi.org/10.1007/978-3-030-37670-3_13

Download citation

  • DOI: https://doi.org/10.1007/978-3-030-37670-3_13

  • Published:

  • Publisher Name: Springer, Cham

  • Print ISBN: 978-3-030-37669-7

  • Online ISBN: 978-3-030-37670-3

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics