IT/IS SECURITY MANAGEMENT WITH UNCERTAIN INFORMATION

被引:0
|
作者
Klimes, Cyril [1 ]
Bartos, Jiri [1 ]
机构
[1] Mendelova Univ Brne, Ustav Informat, Brno, Czech Republic
关键词
information retrieval; fuzzy sets; modeling information systems under uncertainty; adaptive model; information security; risk management; risk analysis;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The paper introduces a novel proposal of a security management system destined primarily for application in the field of IT. Its core is formed by a triplet of cooperating knowledge-based (expert) systems, the knowledge bases of which consist of vague If-Then rules. The knowledge bases were created by experts on the problem domain and multiple times tested and verified on actual scenarios and real systems. With the system, a comprehensive methodology that is a part of a more complex approach to a decision making process is introduced. The proposed fuzzy tool is demonstrated on examples and problems from the area of information security. The paper also briefly reviews other used approaches to information security management mainly qualitative and quantitative methodologies.
引用
收藏
页码:408 / 419
页数:12
相关论文
共 50 条
  • [1] AN ONTOLOGY TO THE INFORMATION SECURITY MANAGEMENT
    Mattos, Mauro Marcelo
    Heckmann, Jacques Robert
    da Silva, Paulo Fernando
    [J]. 2015 9TH INTERNATIONAL CONFERENCE ON COMPLEX, INTELLIGENT, AND SOFTWARE INTENSIVE SYSTEMS CISIS 2015, 2015, : 326 - 329
  • [2] A FRAMEWORK FOR INFORMATION SECURITY MANAGEMENT
    Angheluta, Dragos-Ionut
    Lupu, Luminita-Mihaela
    [J]. FROM MANAGEMENT OF CRISIS TO MANAGEMENT IN A TIME OF CRISIS, 2016, : 2 - 16
  • [3] Time management in information security
    Pulkkis, G
    Grahn, K
    [J]. INFORMATION TECHNOLOGY AND ORGANIZATIONS: TRENDS, ISSUES, CHALLENGES AND SOLUTIONS, VOLS 1 AND 2, 2003, : 527 - 530
  • [4] Information security management model
    Cribb, T
    Rao, A
    [J]. SAM'03: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON SECURITY AND MANAGEMENT, VOLS 1 AND 2, 2003, : 654 - 657
  • [5] The Information Security Risk Management
    Semin, Valeriy G.
    Shmakova, Elena G.
    Los, Lexei B.
    [J]. PROCEEDINGS OF THE 2017 INTERNATIONAL CONFERENCE QUALITY MANAGEMENT,TRANSPORT AND INFORMATION SECURITY, INFORMATION TECHNOLOGIES (IT&QM&IS), 2017, : 106 - 109
  • [6] STANDARDIZATION IN INFORMATION SECURITY MANAGEMENT
    Fal', A. M.
    [J]. CYBERNETICS AND SYSTEMS ANALYSIS, 2010, 46 (03) : 512 - 515
  • [7] Information security and risk management
    Bodin, Lawrence D.
    Gordon, Lawrence A.
    Loeb, Martin P.
    [J]. COMMUNICATIONS OF THE ACM, 2008, 51 (04) : 64 - 68
  • [8] The Construction of Information Security Management
    Quan, Yin
    [J]. SOCIAL SCIENCE AND EDUCATION, 2013, 10 : 519 - 521
  • [9] A framework for the management of information security
    Leiwo, J
    Zheng, YL
    [J]. INFORMATION SECURITY, 1998, 1396 : 232 - 245
  • [10] Knowledge management and information security
    Buogo, Mateus
    Fachinelli, Ana Cristina
    Giacomello, Cintia Paese
    [J]. ATOZ-NOVAS PRATICAS EM INFORMACAO E CONHECIMENTO, 2019, 8 (02): : 49 - 59