Business process-based valuation of IT-security

  • Authors:
  • Thomas Neubauer;Markus Klemen;Stefan Biffl

  • Affiliations:
  • Vienna University of Technology, Austria;Vienna University of Technology, Austria;Vienna University of Technology, Austria

  • Venue:
  • EDSER '05 Proceedings of the seventh international workshop on Economics-driven software engineering research
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

Growing business integration raises the need for secure business processes as security problems can affect the profit and the reputation of a company. However, decisions regarding a reasonable level of security in a business environment are often made in a value-neutral way.This paper presents a framework for the valuation of cost-benefit of various security levels with business processes. The framework can be used for planning security levels in software development and allows further continuous monitoring and improvement of cost-benefit of security measures along with operative business processes.