Towards a decision model based on trust and security risk management

  • Authors:
  • Baptiste Alcalde;Eric Dubois;Sjouke Mauw;Nicolas Mayer;Saša Radomirović

  • Affiliations:
  • Université du Luxembourg, Luxembourg;CRP-Henri Tudor - CITI, Luxembourg;Université du Luxembourg, Luxembourg;CRP-Henri Tudor - CITI, Luxembourg;Université du Luxembourg, Luxembourg

  • Venue:
  • AISC '09 Proceedings of the Seventh Australasian Conference on Information Security - Volume 98
  • Year:
  • 2009

Quantified Score

Hi-index 0.00

Visualization

Abstract

From choosing the daily lunch menu to buying or selling stock options, decisions have to be made every day. In general, due to incomplete information, making a decision carries a risk. Typically, such risks are mitigated through risk management. However, risk is not the only element involved in the decision process. When the decision to be made concerns an interaction between two entities, trust plays an important role. Trust, in such an interaction, is a prediction of one entity's reliance on the other entity to perform a certain action. In this paper we formulate a trust reference model and take a first step towards a decision model by combining the trust model with an existing risk model. The decision model is illustrated by an example in the e-banking domain.