Why 2 times 2 ain t necessarily 4 at least not in IT security risk assessment

نویسندگان

  • M. Meier
  • D. Reinhardt
  • S. Wendzel
  • Jens Braband
چکیده

Recently, a novel approach towards semi-quantitative IT security risk assessment has been proposed in the draft IEC 62443-3-2. This approach is analyzed from several different angles, e.g. embedding into the overall standard series, semantic and methodological aspects. As a result, several systematic flaws in the approach are exposed. As a way forward, an alternative approach is proposed which blends together semi-quantitative risk assessment as well as threat and risk analysis.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Why 2 times 2 ain't neccessarily 4 - at least not in IT security risk assessment

Recently, a novel approach towards semi-quantitative IT security risk assessment has been proposed in the draft IEC 62443-3-2. This approach is analyzed from several different angles, e.g. embedding into the overall standard series, semantic and methodological aspects. As a result, several systematic flaws in the approach are exposed. As a way forward, an alternative approach is proposed which ...

متن کامل

ارائه الگویی برای ارزیابی ریسک آتش‌سوزی‌های عمدی

Background & Objectives : It is not possible to live without using fire. However, fire could destruct human properties in a short time. One of the most important types of fire is intentional fire. This type of fire has become a great problem for insurance companies, fire departments, industries, government and business in the recent years. This study aimed to provide a framework for risk assess...

متن کامل

Introduction to EMC for Functional Safety

1. Summary ..........................................................................................................................1 2. Introduction to the problem...............................................................................................2 3. IEC 61508 and IEC/TS 61000-1-2...................................................................................3 4. Appropriate me...

متن کامل

Lack of bladder tumor promoting activity in rats fed sodium saccharin in AIN-76A diet.

Sodium saccharin (NaSac) fed as 5% of Prolab diet promotes bladder tumor carcinogenesis in male F344 rats initiated with N-[4-(5-nitro-2-furyl)-2-thiazolyl]formamide (FANFT) fed as 0.2% of the diet for 4 weeks. NaSac also increases urothelial proliferation if fed for short periods in Prolab diet, but no increased proliferation is seen if it is fed for up to 10 weeks in AIN-76A semisynthetic die...

متن کامل

Electronic Information Security Documentation

Effective security management depends upon good risk management, which is itself based upon a reliable risk assessment, involving data collection of all the facets influencing system risk. Such data collection is often an extremely onerous task, particularly if a substantial proportion of the required information is not adequately documented. Hence comprehensive, updated information security do...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2016