Vis enkel innførsel

dc.contributor.authorMa, Shenglan
dc.contributor.authorWang, Hao
dc.contributor.authorDai, Hong-Ning
dc.contributor.authorCheng, Shuhan
dc.contributor.authorYi, Ruihua
dc.contributor.authorWang, Tongsen
dc.date.accessioned2019-04-16T06:18:45Z
dc.date.available2019-04-16T06:18:45Z
dc.date.created2019-01-17T19:11:17Z
dc.date.issued2018
dc.identifier.citation2018 IEEE 16th Intl Conf on Dependable, Autonomic and Secure Computing, 16th Intl Conf on Pervasive Intelligence and Computing, 4th Intl Conf on Big Data Intelligence and Computing and Cyber Science and Technology Congress(DASC/PiCom/DataCom/CyberSciTech)nb_NO
dc.identifier.isbn978-1-5386-7519-9
dc.identifier.urihttp://hdl.handle.net/11250/2594709
dc.description.abstractRisk and Information System Control Framework in business includes the methods and processes to manage risks and seize opportunities which involve identifying particular risk events relevant to the objectives, assessing them in terms of likelihood and magnitude of impact, determining a response strategy, and monitoring progress. In order to provide better support for the backtracking, traceability, irreversibility, and credible requirements of risk registration table data in the framework, this paper proposes a blockchain-based risk and information system control framework. A risk association tree is designed for combining summarized risk item ledgers with risk assessment ledgers and risk response ledgers based on the Merkle Tree. Three proposed smart contracts are used in risk identification, risk assessment, risk response and mitigation, and risk and control monitoring and reporting processes. We implement a prototype for this framework.nb_NO
dc.language.isoengnb_NO
dc.publisherIEEEnb_NO
dc.relation.ispartof2018 IEEE 16th Intl Conf on Dependable, Autonomic and Secure Computing, 16th Intl Conf on Pervasive Intelligence and Computing, 4th Intl Conf on Big Data Intelligence and Computing and Cyber Science and Technology Congress(DASC/PiCom/DataCom/CyberSciTech)
dc.titleA Blockchain-Based Risk and Information System Control Frameworknb_NO
dc.typeChapternb_NO
dc.description.versionacceptedVersionnb_NO
dc.source.pagenumber106-113nb_NO
dc.identifier.doi10.1109/DASC/PiCom/DataCom/CyberSciTec.2018.00031
dc.identifier.cristin1659763
dc.description.localcode© 2018 IEEE. Personal use of this material is permitted. Permission from IEEE must be obtained for all other uses, in any current or future media, including reprinting/republishing this material for advertising or promotional purposes, creating new collective works, for resale or redistribution to servers or lists, or reuse of any copyrighted component of this work in other worksnb_NO
cristin.unitcode194,63,55,0
cristin.unitnameInstitutt for IKT og realfag
cristin.ispublishedtrue
cristin.fulltextAccepted
cristin.qualitycode1


Tilhørende fil(er)

Thumbnail

Denne innførselen finnes i følgende samling(er)

Vis enkel innførsel