Security Metrics and Security Investment Models
نویسنده
چکیده
Planning information security investment is somewhere between art and science. This paper reviews and compares existing scientific approaches and discusses the relation between security investment models and security metrics. To structure the exposition, the high-level security production function is decomposed into two steps: cost of security is mapped to a security level, which is then mapped to benefits. This allows to structure data sources and metrics, to rethink the notion of security productivity, and to distinguish sources of indeterminacy as measurement error and attacker behavior. It is further argued that recently proposed investment models, which try to capture more features specific to information security, should be used for all strategic security investment decisions beneath defining the overall security budget.
منابع مشابه
Economic Security Metrics
This chapter surveys economic approaches for security metrics, among which we could identify two main areas of research. One has its roots in investment and decision theory and is mainly pursued in the field of information technology-oriented business administration. It has yielded a number of quantitative metrics that can be applied as guidelines in investment decisions as well as for the eval...
متن کاملCommunicating the Economic Value of Security Investments; Value at Security Risk
The information and data security communities and their individual practitioners have long experienced the pedagogical difficulties in communicating to management or funding bodies the importance and relevance of sufficient investments in information and data security. Inside these communities there is almost universal agreement that companies under invest in security. One reason for this pedag...
متن کاملNational Security and Economic Growth
D uring the past few decades, national security plays a central role in the process of economic development. Also, foreign investment and trade have rapidly increased worldwide and have enhanced economic growth in developing countries. Although foreign investment and trade bring huge economic benefits, many developing countries fear that by opening up markets to competition and forei...
متن کاملThe Impact of Land Tenure Security on Housing Investment at Informal Settlements (The Case of Eslamabad Neighborhood, Tehran)
In recent years, tenure security has been one of the main objectives of improvement projects in urban poor settlements. Despite lots of international studies initiated in this field, it has received little attention in Iran. The main aim of this paper is to assess the influence of tenure security on the level of household investment in housing. Survey method is considered as the methodology ...
متن کاملInsurer Optimal Asset Allocation in a Small and Closed Economy: The Case of Iran’s Social Security Organization
We seek to determine the optimal amount of the insurer’s investment in all types of assets for a small and closed economy. The goal is to detect the implications and contributions the risk seeker and risk aversion insurer commonly make and the effectiveness in the investment decision. Also, finding the optimum portfolio for each is the main goal of the present study. To this end, we adopted the...
متن کامل