• DocumentCode
    2040593
  • Title

    Analysis of actual IT security incident in an organization by using IT security implementation model

  • Author

    Sugiura, Masashi ; Suwa, Hirohiko ; Ohta, Toshizumi

  • Author_Institution
    NEC Corp., Univ. of Electro-Commun., Tokyo, Japan
  • fYear
    2011
  • fDate
    13-18 Sept. 2011
  • Firstpage
    1163
  • Lastpage
    1167
  • Abstract
    A game-theory-based model of IT-security implementation in an organization was developed. The model consists of two players: an IT-security promotion section and an employee. The model is applied to an actual IT-security incident, the effect of the values of the model parameters on promotion of security implementation is analyzed, and what changes to the parameters are effective are determined. The results showed that this model has the potential for practical use.
  • Keywords
    game theory; information technology; security of data; IT security implementation model; IT-security promotion; actual IT security incident; game theory-based model; Accidents; Analytical models; Games; Loss measurement; Nash equilibrium; Organizations; Security; dilemma; game theory; model; organization; security;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    SICE Annual Conference (SICE), 2011 Proceedings of
  • Conference_Location
    Tokyo
  • ISSN
    pending
  • Print_ISBN
    978-1-4577-0714-8
  • Type

    conf

  • Filename
    6060509