首页> 外文会议>International Technical Conference on Circuits/Systems, Computers and Communications >A Proposed Framework for Ranking Critical Information Assets in Information Security Risk Assessment Using the OCTAVE Allegro Method with Decision Support System Methods
【24h】

A Proposed Framework for Ranking Critical Information Assets in Information Security Risk Assessment Using the OCTAVE Allegro Method with Decision Support System Methods

机译:一个拟议的框架,用于使用DecileS支持系统方法使用OctAve Allegro方法排名信息安全风险评估中的关键信息资产

获取原文

摘要

The security of an organization lies not only in physical buildings, but also in its information assets. Safeguarding information assets requires further study to establish optimal security mitigation steps. In determining the appropriate mitigation of information assets, both an information security risk assessment and a clear and measurable rating are required. Most risk management methods do not provide the right focus on ranking the critical information assets of an organization. This paper proposes a framework approach for ranking critical information assets. The proposed framework uses the OCTAVE Allegro method, which focuses on profiling information assets by combining ranking priority measurements using decision support system methods, such as Simple Additive Weighting (SAW) and Analytic Hierarchy Process (AHP). The combined OCTAVE Allegro-SAW and OCTAVE Allegro-AHP methods are expected to better address risk priority as an input to making mitigation decisions for critical information assets. These combinations will help management to avoid missteps in adjusting budget needs allocation or time duration by selecting asset information mitigation using the ranking results of the framework.
机译:组织的安全性不仅在物理建筑物中,而且还在其信息资产中。保护信息资产需要进一步研究以建立最佳的安全缓解步骤。在确定适当的信息资产缓解时,需要提供信息安全风险评估和清晰可衡量的评级。大多数风险管理方法都没有提供对排名组织的关键信息资产的权利。本文提出了一种用于排名关键信息资产的框架方法。所提出的框架采用八度Allegro方法,通过使用决策支持系统方法组合排名优先测量来侧重于分析信息资产,例如简单的添加权重(SAW)和分析层次结构(AHP)。期望组合的八度且八度Allegro-AHP方法预计将更好地应对风险优先级作为对关键信息资产进行缓解决策的投入。这些组合将通过使用框架的排名结果选择资产信息缓解来帮助管理管理,以避免在调整预算需要分配或持续时间时进行误操作。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号