Study on architecture-oriented information security risk assessment model

  • Authors:
  • Wei-Ming Ma

  • Affiliations:
  • Information Management Department, Cheng-Shiu University

  • Venue:
  • ICCCI'10 Proceedings of the Second international conference on Computational collective intelligence: technologies and applications - Volume Part III
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

In this study, we adopt the structure behavior coalescence methodology to construct an architecture-oriented information security risk assessment model (AOISRAM), which is integrated structure and behavior of the risk assessment model. AOISRAM solves many difficulties caused by the process-oriented approach in ISO 27001:2005 of information security risk assessment such as uneven distribution of resources, poor safety performance, and high risk. We find out the information security consultant, project manager are the key roles for the success of the risk assessment from structure behavior coalescence diagram. The feedback mechanism in the enterprise is essential to report and respond to the incidents for reducing the risk. This research achieves a beneficial model and knowledge for the information security risk assessment. This accomplishment may be valuable for the business and academic circles to follow and refer.