Cybersecurity Disclosure Mandates and Cross‐Domain Compliance Spillovers

ABSTRACT We examine whether cybersecurity disclosure mandates generate compliance spillovers beyond their intended regulatory domain. Exploiting the staggered adoption of US state breach notification laws (BNLs), we find that mandatory breach disclosure reduces firms’ federal regulatory violations in non‐cyber domains by more than 5% in the first year after adoption. The effect is transitory, dissipating in subsequent years, but extends across several major regulatory domains. Cross‐sectional analyses show that the reduction is stronger among firms with greater organizational capacity and more effective internal controls. The findings are robust to a broad set of identification and sensitivity tests. Overall, the evidence suggests that cybersecurity disclosure mandates can operate as organizational governance shocks, inducing cross‐domain compliance spillovers when firms have stronger preexisting compliance infrastructure.

Authors

Institutions

Publication Details

Journal
Financial Management
Published
2026-10-07
DOI
https://doi.org/10.1111/fima.70072
Primary Topic
Auditing, Earnings Management, Governance
Type
article
Field-Weighted Citation Impact
0.00
Controls
|||
ALL TIME
JAN
FEB
MAR
APR
MAY
JUN
JUL
AUG
SEP
OCT
article

Cybersecurity Disclosure Mandates and Cross‐Domain Compliance Spillovers

Danling Jiang, Lei Gao, Yan Wendy Wu, Jinghua Wang
Financial Management
Auditing, Earnings Management, Governance
article

Cybersecurity Disclosure Mandates and Cross‐Domain Compliance Spillovers

Danling Jiang, Lei Gao, Yan Wendy Wu, Jinghua Wang
article en

Abstract

ABSTRACT We examine whether cybersecurity disclosure mandates generate compliance spillovers beyond their intended regulatory domain. Exploiting the staggered adoption of US state breach notification laws (BNLs), we find that mandatory breach disclosure reduces firms’ federal regulatory violations in non‐cyber domains by more than 5% in the first year after adoption. The effect is transitory, dissipating in subsequent years, but extends across several major regulatory domains. Cross‐sectional analyses show that the reduction is stronger among firms with greater organizational capacity and more effective internal controls. The findings are robust to a broad set of identification and sensitivity tests. Overall, the evidence suggests that cybersecurity disclosure mandates can operate as organizational governance shocks, inducing cross‐domain compliance spillovers when firms have stronger preexisting compliance infrastructure.

Financial Management
New Jersey Institute of Technology (US), George Mason University (US), Stony Brook University (US), Wilfrid Laurier University (CA)
Openalex Percentile: Top 3%
Auditing, Earnings Management, Governance
AI Navigator

Ask Laika to Summarize, Analyze, and Connect papers live on the map.

Summarize Papers & Methodologies

Extract key findings, datasets, and comparative methods across publications.

Benchmark Rankings & Visual Analytics

Rank top research institutions, authors, funders, topics, and journals by Field-Weighted Citation Impact (FWCI) and paper volume with instant charts.

Connect Distant Disciplines

Bridge topological clusters on the map to find hidden collaborative intersections.

Cybersecurity Disclosure Mandates and Cross‐Domain Compliance Spillovers — Danling Jiang, Lei Gao, et al. · Financial Management (2026) | TGRS Research Map | TGRS