EconPapers    
Economics at your fingertips  
 

A VIKOR-BASED MULTIPLE CRITERIA DECISION METHOD FOR IMPROVING INFORMATION SECURITY RISK

Yu-Ping Ou Yang (), How-Ming Shieh, Jun- der Leu and Gwo-Hshiung Tzeng ()
Additional contact information
Yu-Ping Ou Yang: Department of Business Administration, National Central University, 300 Chung-da Road, Chung-Li City 320, Taiwan
How-Ming Shieh: Department of Business Administration, National Central University, 300 Chung-da Road, Chung-Li City 320, Taiwan
Jun- der Leu: Department of Business Administration, National Central University, 300 Chung-da Road, Chung-Li City 320, Taiwan
Gwo-Hshiung Tzeng: Department of Business and Entrepreneurial Management, Kainan University, No. 1, Kainan Road, Luchu, Taoyuan 338, Taiwan;

International Journal of Information Technology & Decision Making (IJITDM), 2009, vol. 08, issue 02, 267-287

Abstract: Most multicriteria methods focus on ranking and selecting from a set of alternatives. These methods are usually used to compare all alternatives based on the synthesized scorings within a normalized scale with respect to the same criteria in multicriteria problems. However, the decision makers often simultaneously manage one or several alternatives/projects with conflicting and noncommensurable criteria to reduce the gaps to achieve the aspired grade in practice. They then need to rank the gaps that have not been reduced or improved (the unimproved gaps) for the alternatives/projects or aspects of a project to get the most benefit. Because these compared alternatives/projects do not usually have the same criteria/aspects, traditional methods are unsuitable to deal with them. Thus, this research proposes a new VIKOR method to solve this problem; this new method allows the decision maker to understand these gaps of the projects/aspects and rank them to improve these large gaps in control items to achieve the aspired level. Its concept originates in compromise solutions, in particular the VIKOR method. In addition, this research also provides an example of improving information security risk to demonstrate the suitability of this new method. The results show the effectiveness of the new method.

Keywords: Multiple criteria decision making (MCDM); compromise solution; VIKOR; risk assessment; residual risk; information security management system (ISMS) (search for similar items in EconPapers)
Date: 2009
References: View complete reference list from CitEc
Citations: View citations in EconPapers (17)

Downloads: (external link)
http://www.worldscientific.com/doi/abs/10.1142/S0219622009003375
Access to full text is restricted to subscribers

Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.

Export reference: BibTeX RIS (EndNote, ProCite, RefMan) HTML/Text

Persistent link: https://EconPapers.repec.org/RePEc:wsi:ijitdm:v:08:y:2009:i:02:n:s0219622009003375

Ordering information: This journal article can be ordered from

DOI: 10.1142/S0219622009003375

Access Statistics for this article

International Journal of Information Technology & Decision Making (IJITDM) is currently edited by Yong Shi

More articles in International Journal of Information Technology & Decision Making (IJITDM) from World Scientific Publishing Co. Pte. Ltd.
Bibliographic data for series maintained by Tai Tone Lim ().

 
Page updated 2025-03-20
Handle: RePEc:wsi:ijitdm:v:08:y:2009:i:02:n:s0219622009003375