Information Security Risk Assessment Based on Analytic Hierarchy Process
نویسندگان
چکیده
Abstract Information security risk assessment was an important component of information systems security engineering and the selection of assessment method had a direct impact on the final results of the assessment. But there were too many elements in the process of information security risk assessment. How to find the optimal elements from many elements to simplify the calculation of risk value and provide a strong basis for taking relevant measures, which was a problem needed to be solved. In addition, the reliability of the risk assessment results could not be guaranteed only through a single qualitative or quantitative assessment method. By Analytic Hierarchy Process (AHP), the relative weight of elements related to information security risk could be calculated. Then the optimal indicators, which provided a strong basis for taking relevant measures, could be selected by sorting the weights of elements to reduce the number of indicators. Moreover, Analytic Hierarchy Process, a method of the combination of qualitative and quantitative assessment methods, could overcome the shortcomings of single qualitative or quantitative assessment method.
منابع مشابه
Multi-Objectives Model to Process Security Risk Assessment Based on AHP-PSO
Nowadays the security risk assessment play a crucial role, which is applied to the entire life cycle of information systems and communication technologies but still so many models for security risk assessment are non practical, therefore, it should be measured and improved. In this paper, a novel approach, in which Analytic Hierarchy Process (AHP) and Particles Swarm Optimization (PSO) can be c...
متن کاملINTELLIGENT BUILDING ASSESSMENT BASED ON AN INTEGRATED MODEL OF FUZZY ANALYTIC HIERARCHY PROCESS AND FUZZY PREFERENCE DEGREE APPROACH (FAHP-FPDA)
Intelligent building (IB) technologies have widespread applications in the building design and development. In this regard, it is necessary to develop intelligent building assessment models in order to satisfy the clients, professionals, and occupants' growing demands. To this end, this paper proposes an integrated analytic hierarchy process (AHP) and preference degree approach (PDA) under the ...
متن کاملRisk Assessment on Storage Security of Hazardous Chemicals Based on AHP-fuzzy Comprehensive Evaluation Approach
To solve the uncertainty and complexity problems in hazardous chemical storage risk assessment, this paper constructs the evaluation index system and proposed the risk assessment model based on AHP-fuzzy comprehensive evaluation approach, which organically integrate the quantitative and the objectively of the analytic hierarchy process (AHP) and the inclusive advantage of fuzzy comprehensive ev...
متن کاملCorresponding Security Level with the Risk Factors of Personally Identifiable Information through the Analytic Hierarchy Process
Since Taiwan government has announced the New Version of Personal Information Protection Act , People began to pay attention to their personal information and privacy. Many industries significantly increased their responsibilities and faced more serious challenges. In order to cope with the requirements of the new law, BS10012 specification can help enterprises to reduce impact of personal data...
متن کاملGroup Decision-Making Information Security Risk Assessment Based on AHP and Information Entropy
The phenomenon of over-reliance on subjective assignment is a challenging task in the information security risk assessment process. This study deals with this problem. We have presented a group decisionmaking information security risk assessment method by combining Analytic Hierarchy Process (AHP) with Information entropy. When AHP is used to assess the security risk of information systems, the...
متن کامل