Vis enkel innførsel

dc.contributor.authorWangen, Gaute
dc.date.accessioned2017-11-21T10:32:06Z
dc.date.available2017-11-21T10:32:06Z
dc.date.created2016-02-04T09:14:43Z
dc.date.issued2015
dc.identifier.issn1893-6563
dc.identifier.urihttp://hdl.handle.net/11250/2467306
dc.description.abstractMuch of the debate surrounding risk management in information security (InfoSec) has been at the academic level, and how practitioners view predominant issues is an important element often left unexplored. Thus, this article represents an initial insight into the InfoSec risk professionals view of the field through the results of a 46-participant online study. We analyze known issues regarding InfoSec risk management (ISRM), especially concerning risk management program development and maintenance, contributions to business, and challenges within the research field. One of the key findings from this study was that risk communication is a key skill that likely needs more emphasis in InfoSec training. Also, we document several issues concerning security measurements and return on investment for the ISRM program, together with other relevant paths for future research.nb_NO
dc.language.isoengnb_NO
dc.publisherNIK: Norsk Informatikkonferansenb_NO
dc.relation.urihttp://ojs.bibsys.no/index.php/NISK/article/view/300
dc.titleAn Initial Insight Into InfoSec Risk Management Practicesnb_NO
dc.typeJournal articlenb_NO
dc.typePeer reviewednb_NO
dc.description.versionpublishedVersionnb_NO
dc.source.journalNorsk Informasjonssikkerhetskonferanse (NISK)nb_NO
dc.identifier.cristin1331807
dc.description.localcodeCopyright 2015 © Norsk Informatikkonferanse.nb_NO
cristin.unitcode194,18,21,80
cristin.unitnameNorwegian Information Security Lab
cristin.ispublishedtrue
cristin.fulltextoriginal
cristin.qualitycode1


Tilhørende fil(er)

Thumbnail

Denne innførselen finnes i følgende samling(er)

Vis enkel innførsel