A Data-Driven Approach to Cyber Risk Assessment

被引:5
|
作者
Santini, Paolo [1 ]
Gottardi, Giuseppe [2 ]
Baldi, Marco [1 ]
Chiaraluce, Franco [1 ]
机构
[1] Univ Politecn Marche, Ancona, Italy
[2] Fdn F3RM1, Milan, Italy
关键词
COSTS; MODEL;
D O I
10.1155/2019/6716918
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber risk assessment requires defined and objective methodologies; otherwise, its results cannot be considered reliable. The lack of quantitative data can be dangerous: if the assessment is entirely qualitative, subjectivity will loom large in the process. Too much subjectivity in the risk assessment process can weaken the credibility of the assessment results and compromise risk management programs. On the other hand, obtaining a sufficiently large amount of quantitative data allowing reliable extrapolations and previsions is often hard or even unfeasible. In this paper, we propose and study a quantitative methodology to assess a potential annualized economic loss risk of a company. In particular, our approach only relies on aggregated empirical data, which can be obtained from several sources. We also describe how the method can be applied to real companies, in order to customize the initial data and obtain reliable and specific risk assessments.
引用
收藏
页码:1 / 8
页数:8
相关论文
共 50 条
  • [1] A multimodal data-driven approach for driving risk assessment
    Bai, Congcong
    Jin, Sheng
    Jing, Jun
    Yang, Chengcheng
    Yao, Wenbin
    Rong, Donglei
    Alagbe, Jeremie Adje
    [J]. TRANSPORTATION RESEARCH PART E-LOGISTICS AND TRANSPORTATION REVIEW, 2024, 189
  • [2] A Data-Driven Cyber Resilience Assessment for Industrial Plants
    Simone, Francesco
    Cilli, Claudio
    Di Gravio, Giulio
    Patriarca, Riccardo
    [J]. INFORMATION SYSTEMS AND TECHNOLOGIES, VOL 1, WORLDCIST 2023, 2024, 799 : 467 - 476
  • [3] An efficient security data-driven approach for implementing risk assessment
    Shameli-Sendi, Alireza
    [J]. JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2020, 54
  • [4] Assessment of Cardiovascular Risk based on a Data-driven Knowledge Discovery Approach
    Mendes, D.
    Paredes, S.
    Rocha, T.
    Carvalho, P.
    Henriques, J.
    Cabiddu, R.
    Morais, J.
    [J]. 2015 37TH ANNUAL INTERNATIONAL CONFERENCE OF THE IEEE ENGINEERING IN MEDICINE AND BIOLOGY SOCIETY (EMBC), 2015, : 6800 - 6803
  • [5] Data-Driven Approach to Improving the Risk Assessment Process of Medical Failures
    Yu, Shih-Heng
    Su, Emily Chia-Yu
    Chen, Yi-Tui
    [J]. INTERNATIONAL JOURNAL OF ENVIRONMENTAL RESEARCH AND PUBLIC HEALTH, 2018, 15 (10)
  • [6] Code analysis for intelligent cyber systems: A data-driven approach
    Coulter, Rory
    Han, Qing-Long
    Pan, Lei
    Zhang, Jun
    Xiang, Yang
    [J]. INFORMATION SCIENCES, 2020, 524 : 46 - 58
  • [7] Application of Bayesian Network to Data-Driven Cyber-Security Risk Assessment in SCADA Networks
    Huang, Kaixing
    Zhou, Chunjie
    Tian, Yu-Chu
    Tu, Weixun
    Peng, Yuan
    [J]. 2017 27TH INTERNATIONAL TELECOMMUNICATION NETWORKS AND APPLICATIONS CONFERENCE (ITNAC), 2017, : 96 - 101
  • [8] An interpretable data-driven approach for rules construction: application to cardiovascular risk assessment
    Mendes, D.
    Paredes, S.
    Rocha, T.
    Carvalho, P.
    Henriques, J.
    Morais, J.
    [J]. 2017 39TH ANNUAL INTERNATIONAL CONFERENCE OF THE IEEE ENGINEERING IN MEDICINE AND BIOLOGY SOCIETY (EMBC), 2017, : 2646 - 2649
  • [9] A Data-Driven Artificial Neural Network Approach to Software Project Risk Assessment
    Alatawi, Mohammed Naif
    Alyahyan, Saleh
    Hussain, Shariq
    Alshammari, Abdullah
    Aldaeej, Abdullah A.
    Alali, Ibrahim Khalil
    Alwageed, Hathal Salamah
    [J]. IET SOFTWARE, 2023, 2023
  • [10] Dynamic risk assessment of reservoir production using data-driven probabilistic approach
    Mamudu, Abbas
    Khan, Faisal
    Zendehboudi, Sohrab
    Adedigba, Sunday
    [J]. JOURNAL OF PETROLEUM SCIENCE AND ENGINEERING, 2020, 184