Quantitative Model in Security Informatics Risk Assessment

thumbnail.default.alt
Share
Date
2016-02-24
Director(s)
Publisher
Universidad Antonio Nariño
Campus
Faculty
Program
Degree obtained
Document type
COAR type
http://purl.org/coar/resource_type/c_6501
Citation
Bibliographic Managers
Source
ISSN: 2346-1446
ISSN: 2145-0935
item.page.resume
This paper shows the importance of approaching in security Risk Assessment (RA) about Quantitative model in Risk Management. The RA has been calculated with qualitative method by different framework, for example: RISK IT FRAMEWORK (COBIT Component) [7], OCTAVE – ALLEGRO [8], MAGERIT V3 [9], FAIR [4], ISO 27005 [11], NIST800-30 [3]. All frameworks included in the scope the Risk Assessment; however this is more qualitative than quantitative. In this work, we propose a methodology to support the implementation and execution risk management, using quantitative risk assessment method. The methodology is based on three components: secure capture logs (apply networks forensic technical), likelihood risk or log analysis with logistic regression and risk assessment with influence diagrams.
Abstract
item.page.subject.keyword
item.page.coverage.spatial
item.page.coverage.temporal
Collections