Loading [MathJax]/extensions/MathMenu.js
Information Security Risk Assessment: A Method Comparison | IEEE Journals & Magazine | IEEE Xplore

Information Security Risk Assessment: A Method Comparison


Abstract:

Numerous methods for information security risk assessment (ISRA) are available, yet there is little guidance on how to choose one. Through a comprehensive risk identifica...Show More

Abstract:

Numerous methods for information security risk assessment (ISRA) are available, yet there is little guidance on how to choose one. Through a comprehensive risk identification, estimation, and evaluation framework, the author evaluates the practical application of three ISRA methods in terms of tasks required, user experience, and results.
Published in: Computer ( Volume: 50, Issue: 4, April 2017)
Page(s): 52 - 61
Date of Publication: 26 April 2017

ISSN Information:


Method Completeness Evaluation

Existing frameworks can compare ISRM and risk assessment methods only against predetermined criteria,4, 5 which is restrictive because the framework will overlook any tasks or parameters that the criteria do not cover. In these frameworks, evaluation proceeds from the criteria at the top to methods at the bottom, which makes it difficult to determine cause—effect relationships between method and results.

Contact IEEE to Subscribe

References

References is not available for this document.