DocumentCode
2040593
Title
Analysis of actual IT security incident in an organization by using IT security implementation model
Author
Sugiura, Masashi ; Suwa, Hirohiko ; Ohta, Toshizumi
Author_Institution
NEC Corp., Univ. of Electro-Commun., Tokyo, Japan
fYear
2011
fDate
13-18 Sept. 2011
Firstpage
1163
Lastpage
1167
Abstract
A game-theory-based model of IT-security implementation in an organization was developed. The model consists of two players: an IT-security promotion section and an employee. The model is applied to an actual IT-security incident, the effect of the values of the model parameters on promotion of security implementation is analyzed, and what changes to the parameters are effective are determined. The results showed that this model has the potential for practical use.
Keywords
game theory; information technology; security of data; IT security implementation model; IT-security promotion; actual IT security incident; game theory-based model; Accidents; Analytical models; Games; Loss measurement; Nash equilibrium; Organizations; Security; dilemma; game theory; model; organization; security;
fLanguage
English
Publisher
ieee
Conference_Titel
SICE Annual Conference (SICE), 2011 Proceedings of
Conference_Location
Tokyo
ISSN
pending
Print_ISBN
978-1-4577-0714-8
Type
conf
Filename
6060509
Link To Document