The existent models aiming at information security risk analysis primary startle the problem from a technical view and the real-time assessment approaches are seldom studied. The knowledge based approaches for information security risk analysis are limited in rule presentation and risk management. The bottom-up approaches fails to support effective security decision and control. Real-time assessment is more practical in the managerial view and helps to construct quick response to reduce the risk. This paper studies knowledge model and danger model for information security risk real-time assessment.
Published in:
Security Technology, 2008. SECTECH '08. International Conference on
Date of Conference: 13-15 Dec. 2008