Sciweavers

ICONS
2009
IEEE

Ontology-Based Decision Support for Information Security Risk Management

13 years 11 months ago
Ontology-Based Decision Support for Information Security Risk Management
—As e-Business and e-Commerce applications are increasingly exposed to a variety of information security threats, corporate decision makers are increasingly forced to pay attention to security issues. Risk management provides an effective approach for measuring the security but existing risk management approaches come with major shortcomings such as the demand for very detailed knowledge about the IT security domain and the actual company environment. This paper presents the implementation of the AURUM methodology into a software solution which addresses the identified shortcomings of existing information security risk management software solutions. Thereby, the presented approach supports decision makers in risk assessment, risk mitigation, and safeguard evaluation.
Andreas Ekelhart, Stefan Fenz, Thomas Neubauer
Added 23 May 2010
Updated 23 May 2010
Type Conference
Year 2009
Where ICONS
Authors Andreas Ekelhart, Stefan Fenz, Thomas Neubauer
Comments (0)