My cyber-governance research vision is to realize using the interplay of business and technology (policy) a secure and resilient cyber world where every Internet-connected individual and organization can seamlessly and cost-effectively manage cyber-risks in their day-to-day lives; and at the same time get the most benefit out of (Internet-based) digital services.
However, this vision academically boils down to the multi-dimensional management/governance of cyber-risk - a complex and dauntingly difficult research field having legs in many disciplines. One of my goals is to first understand via experiments and/or existing commercial/policy case studies why certain solutions in this space strengthen cyber-security and privacy and why others do not. Subsequently, my other all important goal is to propose innovative, principled and/or mathematically rigorous, at the same time practically feasible cyber-governance solutions to these complex, multi-dimensional problems in a way that helps, informs, and empowers users, technology practitioners(vendors), organizational stakeholders, and policy makers to take the right steps in making the cyber-space more secure and resilient.
More specifically, my research style comprises an inter-disciplinary (broadly rooted in economics, decision science, applied probability, computational complexity, and privacy-enhancing technologies) investigation of major pressing issues impacting the quality of cyber-risk management in modern networked and distributed systems (e.g., IoT-driven critical and civilian infrastructures, cloud-based service networks, app-based e-commerce ecosystems) that form the core of an IT-pervasive society layered atop multiple IT-networked service supply chains. I take delight in proposing data-driven, rigorous, and interdisciplinary solutions to both, existing fundamental challenges that pose a practical bottleneck to (cost) effective cyber-risk management, as well as futuristic cyber-security and privacy issues that might plague the modern IT-pervasive society. I always strive for originality, socio-economic significance, and mathematical rigor in my solutions.