Security risk assessment methodology for communities (RAM-C)

被引:1
|
作者
Jaeger, C [1 ]
机构
[1] Sandia Natl Labs, Secur Syst & Technol Ctr, Albuquerque, NM 87185 USA
关键词
D O I
10.1109/CCST.2004.1405377
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Sandia National Laboratories (SNL) has developed a number of security risk assessment methodologies (RAMs) for various infrastructures including dams, water systems, electrical transmission, chemical facilities and communities. All of these RAMs consider potential malevolent attacks from different threats, possible undesired events and consequences and determine potential adversary success. They focus on the assessment of these infrastructures to help identify security weaknesses and develop measures to help mitigate the consequences from possible adversary attacks. This paper will focus on RAM-G, the security risk assessment methodology for communities. There are many reasons for a community to conduct a security risk assessment. They include: providing a way to identify vulnerabilities, helping a community to be better prepared in the event of an adversary attack, providing justification for resources to address identified vulnerabilities and planning for future projects. The RAM-C process is a systematic, risk-based approach to assess vulnerabilities and make decisions based on risk. It has provided valuable information to community planners in making security risk decisions.
引用
收藏
页码:106 / 110
页数:5
相关论文
共 50 条
  • [21] THE METHODOLOGY OF RISK ASSESSMENT
    GAFFEY, WR
    RISK ANALYSIS, 1984, 4 (01) : 5 - 5
  • [22] A new risk based assessment methodology to oil&gas pipeline - Security vulnerability assessment (SVA)
    Xue guoxing
    Zhang Zheng
    Zhong Qunpeng
    ENGINEERING STRUCTURAL INTEGRITY: RESEARCH, DEVELOPMENT AND APPLICATION, VOLS 1 AND 2, 2007, : 1161 - 1165
  • [23] ACSRA ICS: Automated Cyber Security Risk Assessment Methodology for Industrial Control Systems
    Altaleb, Haya
    Ady, Laszlo
    Varga, Peter Janos
    Rajnai, Zoltan
    ACTA POLYTECHNICA HUNGARICA, 2025, 22 (02) : 47 - 74
  • [24] A Cyber-Security Risk Assessment Methodology for Medical Imaging Devices: the Radiologists’ Perspective
    Tom Mahler
    Erez Shalom
    Arnon Makori
    Yuval Elovici
    Yuval Shahar
    Journal of Digital Imaging, 2022, 35 : 666 - 677
  • [25] Towards trustworthy Artificial Intelligence: Security risk assessment methodology for Artificial Intelligence systems
    Iturbe, Eider
    Rios, Erkuden
    Toledo, Nerea
    2023 IEEE INTERNATIONAL CONFERENCE ON CLOUD COMPUTING TECHNOLOGY AND SCIENCE, CLOUDCOM 2023, 2023, : 291 - 297
  • [26] An evaluation of practitioners? perceptions of a security risk assessment methodology in air traffic management projects
    Bernsmed, Karin
    Bour, Guillaume
    Lundgren, Martin
    Bergstrom, Erik
    JOURNAL OF AIR TRANSPORT MANAGEMENT, 2022, 102
  • [27] A Cyber-Security Risk Assessment Methodology for Medical Imaging Devices: the Radiologists' Perspective
    Mahler, Tom
    Shalom, Erez
    Makori, Arnon
    Elovici, Yuval
    Shahar, Yuval
    JOURNAL OF DIGITAL IMAGING, 2022, 35 (03) : 666 - 677
  • [28] Automation security - Risk assessment - Methods for risk assessment
    Runde, Markus
    Speth, Walter
    Steffen, Thomas
    Thiel, Christoph
    ATP EDITION, 2016, (1-2): : 48 - 55
  • [29] Security assurance assessment methodology for hybrid clouds
    Hudic, Aleksandar
    Smith, Paul
    Weippl, Edgar R.
    COMPUTERS & SECURITY, 2017, 70 : 723 - 743
  • [30] Methodology of Cyber Security Assessment in the Smart Grid
    Woo, Pil Sung
    Kim, Balho H.
    JOURNAL OF ELECTRICAL ENGINEERING & TECHNOLOGY, 2017, 12 (02) : 495 - 501