【24h】

R.A.R.E.: Round-About Risk Evaluation

机译:r.a.r.e:圆形风险评估

获取原文

摘要

With risk assessment such a crucial part of any IT operation, it is necessary to re-evaluate some of the methods used to procure genuine responses from those under assessment. Many current risk assessment methodologies are set up to fail from the beginning. When performing a risk assessment, the evaluator is dependent on the integrity of the IT team s/he is questioning as part of the assessment. A new methodology called the Round-About Risk Evaluation (R.A.R.E.), implements techniques to reduce the Social Desirability Bias (SDB) that can lead to an assessment that does not represent the depth of security vulnerabilities. Implementation of R.A.R.E. prior to the start of a new a risk assessment, can be used to help the risk assessment team discover vulnerabilities that might otherwise go unreported.
机译:风险评估具有这种关键的任何IT运作的关键部分,有必要重新评估一些用于从评估下采购真正响应的方法。许多当前风险评估方法设置为失败的开始。在进行风险评估时,评估员取决于IT团队的完整性,作为评估的一部分。一种称为圆形风险评估(R.A.R.E.)的新方法,实现减少社会贫时偏差(SDB)的技术,这些技术可以导致不代表安全漏洞的评估。实施r.a.r.e.在开始新的风险评估之前,可以用来帮助风险评估团队发现可能否则未报告的漏洞。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号