A Framework for Assessing IT Security Investment Portfolios
نویسندگان
چکیده
Organizations are faced with different types of information security threats and implement several security technologies to mitigate these security threats. The security technologies vary in their ability to deal with different types of security threats and hence, organizations usually implement a portfolio of security technologies. A key challenge for organizations is to evaluate and determine the value of the counter-measures in the context of these portfolios. This research develops a framework for systematically evaluating the value of portfolios of different types of security investments given the threats and business environment faced by an organization. The proposed framework builds on the theory of financial asset valuation and develops a simulation model that considers a variety of factors such as type of threat, frequency of arrival, possible damage, and recovery time from damage.
منابع مشابه
Optimizing Stock Portfolio of Investment Companies Operating in Field of Petrochemical and Refinery Based on Multivariate GARCH Models
The main objective of this research is to optimize the stock portfolio of investment companies operating in the field of petrochemical and refining industries through minimizing risk with respect to the expected return. In this regard, first of all, the compositions of sample firm's portfolios were investigated during 2013 to 2016 and high-weight industries were selected. Then, the risk of retu...
متن کاملOverreaction & Under reaction: Evaluating performance and Speed of Adjustment Investment Strategies in Tehran Stock Exchange (TSE)
In this research, overreaction and underreaction have been studied by assessing profitability and excess returns of investment strategies and evaluating price adjustment speed in short and long terms. The results showed that the momentum investment strategies had higher annual returns in comparison to contrarian strategies in all short and long periods which led to confirmation of underreaction...
متن کاملEvaluation of Information Security Investment Portfolios: A Probabilistic Approach
As the impact of the information breaches to the information systems increases, organizations have a tendency not only to increase the information security budget but also to be sensitive to the information security expense. Organizations are faced with different types of security threats and they have several alternative technologies to mitigate the negative effects of the security threats. Mo...
متن کاملConstructing investment strategy portfolios by combination genetic algorithms
The classical portfolio problem is a problem of distributing capital to a set of securities. By generalizing the set of securities to a set of investment strategies (or security-rule pairs), this study proposes an investment strategy portfolio problem, which becomes a problem of distributing capital to a set of investment strategies. Since the investment strategy portfolio problem can be formul...
متن کاملEurope and the Challenge of Energy Security: Limitations and Strategies
The increasing dependence of European Union member countries on imported oil and gas has led to concerns about energy supply and security. At the same time the share of clean energy in Europe’s energy consumption basket is increasing due to environmental issues. About a quarter of all energy consumption in the EU is natural gas, and most EU member states import almost all of their energy resou...
متن کامل