Title
Return on security investment against cyber attacks on availability
Abstract
As it is getting more important to support stabilized secure services, many organizations increase the security investment to protect their assets and clients from cyber attacks. The purpose of this paper is to suggest a guideline for security managers to select a set of the security countermeasures that mitigates damages from availability attacks in a cost-effective manner. We present a sys-tematic approach to the risk analysis against availability attacks and demonstrate countermeasure benefit estimations. The risk analysis consists of three procedures: Service Value Analysis, Threat Analysis, and Countermeasure Analysis. As the outcome of the procedures, our approach produces quantitative benefit analysis for each countermeasure against availability attacks. We have applied a simulation tool developed to implement the approach to VoIP(Voice over Internet Protocol) services and the result is also presented.
Year
DOI
Venue
2006
10.1007/11751588_29
ICCSA
Keywords
Field
DocType
availability attack,sys-tematic approach,quantitative benefit analysis,service value analysis,security investment,threat analysis,countermeasure analysis,cyber attack,security countermeasures,security manager,risk analysis,security management,cost effectiveness,voice over internet protocol
Countermeasure,Return on investment,Computer security,Computer science,Security analysis,Profitability index,Countermeasure (computer),Computer security model,Voice over IP,Security management
Conference
Volume
ISSN
ISBN
3981
0302-9743
3-540-34072-6
Citations 
PageRank 
References 
0
0.34
4
Authors
4
Name
Order
Citations
PageRank
Byoung-Joon Min184.39
Seung Hwan Yoo201.01
Jong Ho Ryu300.34
Dong Il Seo491.65