Vis enkel innførsel

dc.contributor.authorWangen, Gaute
dc.date.accessioned2018-02-12T11:43:17Z
dc.date.available2018-02-12T11:43:17Z
dc.date.created2016-10-17T10:06:30Z
dc.date.issued2016
dc.identifier.isbn978-83-60810-90-3
dc.identifier.urihttp://hdl.handle.net/11250/2484060
dc.description.abstractMuch of the debate surrounding risk management in information security (InfoSec) has been at the academic level, where the question of how practitioners view predominant issues is an essential element often left unexplored. Thus, this article represents an initial insight into how the InfoSec risk professionals see the InfoSec risk assessment (ISRA) field. We present the results of a 46-participant study where have gathered data regarding known issues in ISRA. The survey design was such that we collected both qualitative and quantitative data for analysis. One of the key contributions from the study is knowledge regarding how to handle risks at different organizational tiers, together with an insight into key roles and knowledge needed to conduct risk assessments. Also, we document several issues concerning the application of qualitative and quantitative methods, together with drawbacks and advantages. The findings of the analysis provides incentives to strengthen the research and scientific work for future research in InfoSec management.nb_NO
dc.language.isoengnb_NO
dc.publisherInstitute of Electrical and Electronics Engineers (IEEE)nb_NO
dc.relation.ispartofAnnals of Computer Science and Information Systems, Volume 8 Proceedings of the 2016 Federated Conference on Computer Science and Information Systems
dc.relation.urihttps://fedcsis.org/proceedings/2016/pliks/158.pdf
dc.titleAn initial insight into Information Security Risk Assessment practicesnb_NO
dc.typeChapternb_NO
dc.description.versionacceptedVersionnb_NO
dc.source.pagenumber999-1008nb_NO
dc.identifier.cristin1392145
dc.description.localcode© 2016 IEEE. Personal use of this material is permitted. Permission from IEEE must be obtained for all other uses, in any current or future media, including reprinting/republishing this material for advertising or promotional purposes, creating new collective works, for resale or redistribution to servers or lists, or reuse of any copyrighted component of this work in other works.nb_NO
cristin.unitcode194,18,21,80
cristin.unitnameNorwegian Information Security Lab
cristin.ispublishedtrue
cristin.fulltextoriginal
cristin.qualitycode1


Tilhørende fil(er)

Thumbnail

Denne innførselen finnes i følgende samling(er)

Vis enkel innførsel