Risk analysis in extended enterprise environments: Identification of critical risk factors in B2B e-commerce relationships

Authors

    Authors

    S. G. Sutton; C. Hampton; D. Khazanchi;V. Arnold

    Comments

    Authors: contact us about adding a copy of your work at STARS@ucf.edu

    Abbreviated Journal Title

    J. Assoc. Inf. Syst.

    Keywords

    electronic commerce; e-business; business-to-business; interorganizational systems; extended enterprise systems; business; partners; systems assurance; enterprise risk management; ELECTRONIC COMMERCE; CHAINS; Computer Science, Information Systems; Information Science & Library; Science

    Abstract

    The focus of this study is to identify the critical risk factors that can be used to assess the impact of B2B e-commerce on overall enterprise risk. We apply the Khazanchi and Sutton (2001) framework for B2B e-commerce assurance as the organizing conceptual model for the study. The framework focuses on three primary risk components: (1) technical risks, (2) application-user risks, and (3) business risks. To identify a critical set of B2B risk factors, structured focus groups applying a nominal group technique were conducted with three internal constituency groups (corporate groups consisting of IS security, internal IT audit, and e-commerce development managers) and two external constituency groups (e-commerce consultants and external IT auditors). Tests of consistency between the groups confirm strong agreement on the identified critical B2B risk factors. Tests were also conducted on participant groups' perceived relative importance of the critical B2B risk factors. The only substantial inconsistencies were between the internal constituency groups and the e-commerce consultants' group for the business risk factors. This would appear to indicate that the priorities of internal groups might be different from the e-commerce consultants who appear more focused on management support of projects than on active involvement of trading partner staff with systems integration. Subsequent testing of the three-component B2B risk assurance model with a follow-up questionnaire suggests that the identified risk factors support the model, including theorized interrelationships among the three risk components.

    Journal Title

    Journal of the Association for Information Systems

    Volume

    9

    Issue/Number

    3-4

    Publication Date

    1-1-2008

    Document Type

    Article

    Language

    English

    First Page

    151

    Last Page

    174

    WOS Identifier

    WOS:000255125300004

    ISSN

    1536-9323

    Share

    COinS