Information security risk assessment model for risk management

被引:0
|
作者
Wawrzyniak, Dariusz [1 ]
机构
[1] Univ Econ, PL-53345 Wroclaw, Poland
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The article presents a simple model for the information security risk assessment. There are four main elements of the model: security threats, their business impact, security measures and their costs. The security measures - threats relationship matrix is the fundamental quantitative tool for the model. The model bases on well known methods like ALE, ROSI and ISRAM but allows for establishing more flexible and more precise metrics supporting the security management process at different organizational levels(1).
引用
收藏
页码:21 / 30
页数:10
相关论文
共 50 条
  • [41] An Ontology-Based Security Risk Management Model for Information Systems
    Oluwasefunmi T. Arogundade
    Adebayo Abayomi-Alli
    Sanjay Misra
    [J]. Arabian Journal for Science and Engineering, 2020, 45 : 6183 - 6198
  • [42] Dynamic financial and monetary security risk assessment based on information service security assessment model and blockchain
    Jia Li
    [J]. Scientific Reports, 13
  • [43] Dynamic financial and monetary security risk assessment based on information service security assessment model and blockchain
    Li, Jia
    [J]. SCIENTIFIC REPORTS, 2023, 13 (01)
  • [44] From information security management to enterprise risk management
    Stoll, Margareth
    [J]. Lecture Notes in Electrical Engineering, 2015, 313 : 9 - 16
  • [45] An approach to support information security risk assessment
    Genchev, Petko
    [J]. PROCEEDINGS OF THE 2020 INTERNATIONAL CONFERENCE ON BIOMEDICAL INNOVATIONS AND APPLICATIONS (BIA 2020), 2020, : 125 - 128
  • [46] Information Security Risk Assessment of Commercial Organizations
    Kupriyanov, A. O.
    Babenko, A. A.
    Bakhracheva, Y. S.
    [J]. PHYSICS, TECHNOLOGIES AND INNOVATION (PTI-2019), 2019, 2174
  • [47] Information Security Risk Assessment: A Method Comparison
    Wangen, Gaute
    [J]. COMPUTER, 2017, 50 (04) : 52 - 61
  • [48] Taxonomy of information security risk assessment (ISRA)
    Shameli-Sendi, Alireza
    Aghababaei-Barzegar, Rouzbeh
    Cheriet, Mohamed
    [J]. COMPUTERS & SECURITY, 2016, 57 : 14 - 30
  • [49] On the role of the Facilitator in information security risk assessment
    Coles-Kemp, Lizzie
    Overill, Richard E.
    [J]. JOURNAL IN COMPUTER VIROLOGY AND HACKING TECHNIQUES, 2007, 3 (02): : 143 - 148
  • [50] A Study of Information Security Evaluation and Risk Assessment
    Li, Jingyi
    Chao, Shiwei
    Huo, Minxia
    [J]. 2015 FIFTH INTERNATIONAL CONFERENCE ON INSTRUMENTATION AND MEASUREMENT, COMPUTER, COMMUNICATION AND CONTROL (IMCCC), 2015, : 1909 - 1912