DocumentCode :
3612022
Title :
Quantitative Risk Analysis in Information Security Management: A Modern Fairy Tale
Author :
Oppliger, Rolf
Volume :
13
Issue :
6
fYear :
2015
Firstpage :
18
Lastpage :
21
Abstract :
According to conventional wisdom, information security management must start with a quantitative risk analysis. Such an analysis works fine in theory, but it hardly works in practice. Baseline requirements, vulnerability management, and qualitative risk analysis can combine to provide a viable alternative.
Keywords :
risk analysis; security of data; information security management; quantitative risk analysis; vulnerability management; Computer security; Information security; Risk management; information security management; quantitative risk analysis; risk management; security;
fLanguage :
English
Journal_Title :
Security Privacy, IEEE
Publisher :
ieee
ISSN :
1540-7993
Type :
jour
DOI :
10.1109/MSP.2015.118
Filename :
7349099
Link To Document :
بازگشت