Title
Context-sensitive Information security Risk identification and evaluation techniques
Abstract
The objective of my research is to improve and support the process of Information security Risk Assessment by designing a scalable Risk argumentation framework for socio-digital-technical Risk. Due to the various types of IT systems, diversity of architectures and dynamic nature of Risk, there is no one-size-fits all RA method. As such, the research hopes to identify guidelines for conducting Risk Assessments in contexts that raise special challenges such as Telecom and virtualized infrastructures. Finally, it will suggest ways of qualitatively and quantitatively evaluating Information Security Risks in such scenarios by using argumentation and/or modelling attacker business cases.
Year
DOI
Venue
2014
10.1109/RE.2014.6912303
Requirements Engineering Conference
Keywords
Field
DocType
information systems,risk management,security of data,IT systems,RA method,architectures diversity,context-sensitive information security risk identification,evaluation techniques,information security risk assessment,scalable risk argumentation framework,socio-digital-technical risk,telecom,virtualized infrastructures
Vulnerability (computing),Risk analysis (business),Computer science,Risk analysis (engineering),Risk management,Information security management,IT risk management,Threat,Factor analysis of information risk,Security management
Conference
ISSN
Citations 
PageRank 
1097-0592
0
0.34
References 
Authors
4
1
Name
Order
Citations
PageRank
Ionita, D.181.29