• A.O. Natorina Academician Yuriy Bugay International Scientific and Technical University
Keywords: online business, retail, IT risk, qualitative assessment of IT risks, cybersecurity, cyberincident, contin-uum of unified activities


It is substantiated that the rational management of IT risks is the catalyst for the dynamic online business development in the context of digital transformation and changing marketing environment. It forms the foundation for the active relevant actions implementation to increase the online business competitiveness in accordance with its vision, mission and allows to achieve the planned metrics in the shortest possible time. The systematized list of IT risks of online business which divided into three groups (IT maintenance and support risks; IT potential management risks; IT administration risks) is developed and its graphical interpretation is given. The proposed IT risks take into account the specifics of digital transformation and its impact on the online business set and development. The scientific and method-ical approach to assessing the probability of IT risks and making correct management decisions to level or eliminate them in the future is substantiated. The scientific and methodical approach involves the identification of the status of the IT risks online business, taking into account which allows to develop the relevant management plan. The proposed sci-entific and methodical approach is tested by the example of Ukrainian retailers that have online business in different market segments (food retail; drogerie; home appliances and electronics retail; DIY-retail). The preconditions and causes of online business IT risks of the studied set of Ukrainian retailers in clusters are determined. Reasonable expla-nations are given on the significance and likelihood of the online business IT risks of retailers in accordance with their identified statuses. It is developed the continuum of unified activities to reduce the negative consequences of three groups IT risks. It based on the results of testing the justified scientific and methodical approach.


1. Артеменко Л. П. Удосконалення процесу управління ризиками у ході впровадження новітніх інформаційних технологій / Л. П. Артеменко, Т. В. Ситник // Молодий вчений. – 2015. – № 1 (1). – С. 38-41.
2. Aven T. Risk assessment and risk management: review of recent advances on their foundation / T. Aven // European Journal of Operational Research. – 2016. – Вип. 253. – № 1. – С. 1-13.
3. Бавико О. Є. Синхронізація розвитку ринку інформаційно-комунікаційних технологій в Україні з глобальними трендами / О. Є. Бавико // Маркетинг і менеджмент інновацій. – 2018. – № 1. – С. 272-283.
4. Forsythe S. М. Consumer patronage and risk perceptions in Internet shopping / S. М. Forsythe // Journal of Business Research. – 2003. – Вип. 56. – № 11. – С. 867-875.
5. Hao X. IT Operational risk measurement model based on internal loss data of banks / X. Hao // E-business Technology and Strategy, CETS 2010, Communications in Computer and Information Science. – 2010. – Вип. 113. – С. 180-191.
6. Lisanti Y. IT service and risk management implementation for online startup SME: Case study: Online startup SME in Jakarta / Y. Lisanti, D. Luhukay, V. Mariani // International Conference on Information Management and Technology (ICIMTech). – 2017. – С. 300-303.
7. Milne G. R. Strategies for reducing online privacy risks: Why consumers read (or don’t read) online privacy notices / G. R. Milne, M. J. Culnan // Journal of Interactive Marketing. – 2004. – Вип. 18. – № 3. – С. 15-29.
8. Natorina A. Online retailers’ management system of marketing commodity policy / A. Natorina // Economic Annals-XXI. – 2018. – № 174 (9-10). – С. 69-72.
9. Наторіна А. О. Маркетингова товарна політика онлайн-ритейлерів: характеристика та траєкторії розвитку / А. О. Наторіна // Бізнес Інформ. – 2018. – № 9. – C. 272-277. URL: (дата звернення: 05.05.2020).
10. Obrand L. The interstitiality of IT risk: an inquiry into information systems development practices / L. Obrand, N‐P. Augustsson, L. Mathiassen, J. Holmstrom // Info Systems. – 2019. – № 29. – С. 97-118.
11. Скопенко Н. С. Особливості формування комплексної системи ризик-менеджменту / Н. С. Скопенко // Теоретичні та прикладні питання економіки. – 2016. – Вип. 1. – С. 32-42.
12. Teymouri M. The impact of information technology on risk management / M. Teymouri, M. Ashoori // Procedia Computer Science. – 2011. – Вип. 3. – С. 1602-1608.
13. Tohidi H. The role of risk management in IT systems of organizations / H. Tohidi // Procedia Computer Science. – 2011. – Вип. 3. – С. 881-887.
14. Yermak S. Problems of innovative activity development at food industry enterprises of Ukraine / S. Yermak // Journal of Hygienic Engineering and Design. – 2017. – Вип. 21. – С. 96-102. URL: (дата звернення: 04.05.2020).