首页> 外文期刊>Information Processing & Management >Managing the investment in information security technology by use of a quantitative modeling
【24h】

Managing the investment in information security technology by use of a quantitative modeling

机译:通过量化模型管理对信息安全技术的投资

获取原文
获取原文并翻译 | 示例
           

摘要

This paper presents a mathematical model for an optimal security-technology investment evaluation and decision-making processes based on a quantitative analysis of the security risks and a digital-assets assessment in an organization. The model makes use of a quantitative analysis of different security measures that counteract individual risks by identifying the information-system processes in an enterprise and the potential threats. The model comprises the target security levels for all the identified core business processes and the probability of a security accident together with the possible loss the organization may suffer. The model allows in-depth analyses and computations providing quantitative assessments of different options for investments, which translate into recommendations that facilitate the selection of the best solution and the associated decision-making. The model was tested using empirical examples and mathematical simulations with data from a real business environment.
机译:本文基于对组织中安全风险的定量分析和数字资产评估,给出了用于优化安全技术投资评估和决策过程的数学模型。该模型利用对不同安全措施的定量分析,这些措施通过识别企业中的信息系统过程和潜在威胁来抵制单个风险。该模型包括所有已识别核心业务流程的目标安全级别,安全事故的可能性以及组织可能遭受的损失。该模型允许进行深入的分析和计算,从而提供对不同投资选择的定量评估,并转化为有助于选择最佳解决方案和相关决策的建议。使用经验示例和数学仿真对真实业务环境中的数据进行了测试。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号