Is risk a good security metric?

  • Authors:
  • O. Sami Saydjari

  • Affiliations:
  • Cyber Defense Agency, Wisconsin Rapids, WI

  • Venue:
  • Proceedings of the 2nd ACM workshop on Quality of protection
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

Why measuring security? To make good decisions about how to design security countermeasures, to choose between alternative security architectures, and to improve security during design and operations. This panel brings together a number security experts to relate their perspectives on what makes a good security metric, how risk analysis, one of the most widely used metric, stacks up against those criteria and what alternative metrics of security could be considered. The goal of this short introduction is to both start and stimulate the discussion in the panel and let readers get some insight into the sorts of issues that would be discussed by the panel.