【24h】

THE ECONOMICS OF INFORMATIONTECHNOLOGY (IT) SECURITY

机译:信息技术(IT)安全经济学

获取原文
获取原文并翻译 | 示例

摘要

IT Security has become a salient issue for many organizations. While the literature on the technical aspects ofrnIT security is proliferating, it is not clear how one can quantify the value of IT security. An assessment of thernvalue of IT security technology is critical both to firms employing this technology as well as to firms thatrndevelop the technology. However assessing the value of IT security is a challenging task because of difficultiesrnin measurements of tangible and intangible benefits of it. My thesis addresses the broad issue of the value ofrnIT security. I use both analytical and empirical methodologies. In the first part of my thesis, I conduct an eventrnstudy analysis of the effect of security breach announcements on market value of firms. This analysis providesrnan indirect estimate of the costs of inadequate IT security. In the second and third parts of my thesis, I considerrna typical IT security architecture that includes preventive, detective, and response security controls. I developrna game theoretical model that incorporates the strategic interaction between a firm that invests in IT securityrnand users of the system. I derive the value of IT security mechanisms as the savings in organizational lossrnbecause of security technology. I also plan to analyze the optimal investments in various technologies. Myrnresearch will yield guidelines and insights that will help firms decide their security architectures and securityrndevelopers make their design decisions.
机译:对于许多组织来说,IT安全已成为一个突出的问题。尽管有关IT安全性技术方面的文献激增,但尚不清楚如何量化IT安全性的价值。对IT安全技术的价值进行评估对于使用该技术的公司以及开发该技术的公司都至关重要。但是,评估IT安全的价值是一项艰巨的任务,因为在衡量其有形和无形收益方面存在困难。我的论文解决了IT安全价值的广泛问题。我同时使用分析和经验方法。在论文的第一部分,我对安全漏洞公告对公司市场价值的影响进行了事件研究。该分析提供了对IT安全不足成本的间接估计。在本文的第二部分和第三部分中,我将介绍一种典型的IT安全体系结构,其中包括预防,侦查和响应安全控制。我开发了一种博弈论模型,该模型纳入了投资IT安全性的公司与系统用户之间的战略互动。我将IT安全机制的价值视为由于安全技术而节省的组织损失。我还计划分析各种技术的最佳投资。 Myrnresearch将提供指导方针和见解,以帮助公司确定其安全体系结构,并由安全开发人员进行设计决策。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号