An Approach to Select Cost-Effective Risk Countermeasures - Data and Applications Security and Privacy XXVII
Conference Papers Year : 2013

An Approach to Select Cost-Effective Risk Countermeasures

Abstract

Security risk analysis should be conducted regularly to maintain an acceptable level of security. In principle, all risks that are unacceptable according to the predefined criteria should be mitigated. However, risk mitigation comes at a cost, and only the countermeasures that cost-efficiently mitigate risks should be implemented. This paper presents an approach to integrate the countermeasure cost-benefit assessment into the risk analysis and to provide decision makers with the necessary decision support. The approach comes with the necessary modeling support, a calculus for reasoning about the countermeasure cost and effect, as well as means for visualization of the results to aid decision makers.
Fichier principal
Vignette du fichier
978-3-642-39256-6_18_Chapter.pdf (856.68 Ko) Télécharger le fichier
Origin Files produced by the author(s)

Dates and versions

hal-01490710 , version 1 (15-03-2017)

Licence

Identifiers

Cite

Le Sang Tran, Bjørnar Solhaug, Ketil Stølen. An Approach to Select Cost-Effective Risk Countermeasures. 27th Data and Applications Security and Privacy (DBSec), Jul 2013, Newark, NJ, United States. pp.266-273, ⟨10.1007/978-3-642-39256-6_18⟩. ⟨hal-01490710⟩
104 View
432 Download

Altmetric

Share

More