Methodologies and Tools of Information Security Risk Management
Close
Articolul precedent
Articolul urmator
752 13
Ultima descărcare din IBN:
2023-12-30 23:05
SM ISO690:2012
BULAI, Rodica, BEŞLIU, Victor. Methodologies and Tools of Information Security Risk Management. In: Information Technologies and Security: 2012, 15-16 octombrie 2012, Chișinău. Chișinău, Republica Moldova: Consiliul Naţional pentru Acreditare şi Atestare, 2012, pp. 62-70.
EXPORT metadate:
Google Scholar
Crossref
CERIF

DataCite
Dublin Core
Information Technologies and Security 2012
Conferința "Information Technologies and Security"
Chișinău, Moldova, 15-16 octombrie 2012

Methodologies and Tools of Information Security Risk Management


Pag. 62-70

Bulai Rodica, Beşliu Victor
 
Universitatea Tehnică a Moldovei
 
 
Disponibil în IBN: 11 octombrie 2018


Rezumat

Information security deals with providing protection for digital information and information systems, ensuring confidentiality, integrity and availability of data. The complexity of information security does not resume to mere technicality, transferring significant liability to proper management. The ISO/IEC 27005:2011 – Information security risk management, does not specify any particular method for managing the risks associated with information security, but a general approach. It is up to the organization to devise control objectives that would reflect specific approaches to risk management and the degree of assurance required. There have been multiple attempts to shaping risk analysis and control methodologies and tools amongst which those like CRAMM (United Kingdom, Insight Consulting), RiskWatch (USA, RiskWatch), Risicare/Mehari (France, BUC S.A./Clusif) and GRIF (Russia, Digital Security). Using the appropriate risk assessment solution, an organization can devise its own security requirements. This report deals specifically with the analysis of these methods as well the systems that use it.

Cuvinte-cheie
Information security risk management, CRAMM, RiskWatch, Mehari, GRIF