首页> 外文会议>IFIP TC 11 International conference on information security and privacy >How to Assess Confidentiality Requirements of Corporate Assets?
【24h】

How to Assess Confidentiality Requirements of Corporate Assets?

机译:如何评估企业资产的保密性要求?

获取原文

摘要

Confidentiality is an important property that organizations relying on information technology have to preserve. The purpose of this work is to provide a structured approach for identifying confidentiality requirements. A key step in the information security risk management process is the determination of the impact level arisen from a loss of confidentiality, integrity or availability. We deal here with impact level determination regarding confidentiality by proposing a method to calculate impact levels based on the different kind of consequences typically arisen from threats. The proposed approach assesses the impact arisen from confidentiality losses on different areas separately and uses a parameterized model that allows organizations to adjust it according to their specific needs. A validation of the developed approach has been conducted in a small software development company.
机译:机密性是依赖信息技术的组织必须保留的重要属性。这项工作的目的是提供一种用于识别机密性要求的结构化方法。信息安全风险管理流程中的关键步骤是确定由于失去机密性,完整性或可用性而产生的影响级别。我们在这里通过建议一种方法来基于机密性来确定影响级别,该方法根据威胁通常引起的不同类型的后果来计算影响级别。拟议的方法分别评估了保密损失对不同地区的影响,并使用参数化模型,允许组织根据其特定需求对其进行调整。一家小型软件开发公司已对开发的方法进行了验证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号