EconPapers    
Economics at your fingertips  
 

Practical Methods for Information Security Risk Management

Cristian Amancei ()

Informatica Economica, 2011, vol. 15, issue 1, 151-159

Abstract: The purpose of this paper is to present some directions to perform the risk man-agement for information security. The article follows to practical methods through question-naire that asses the internal control, and through evaluation based on existing controls as part of vulnerability assessment. The methods presented contains all the key elements that concurs in risk management, through the elements proposed for evaluation questionnaire, list of threats, resource classification and evaluation, correlation between risks and controls and residual risk computation.

Keywords: Risk Management; Threats; Vulnerabilities; Information Security (search for similar items in EconPapers)
Date: 2011
References: View references in EconPapers View complete reference list from CitEc
Citations:

Downloads: (external link)
http://www.revistaie.ase.ro/content/57/13%20-%20Amancei.pdf (application/pdf)

Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.

Export reference: BibTeX RIS (EndNote, ProCite, RefMan) HTML/Text

Persistent link: https://EconPapers.repec.org/RePEc:aes:infoec:v:15:y:2011:i:1:p:151-159

Access Statistics for this article

Informatica Economica is currently edited by Ion Ivan

More articles in Informatica Economica from Academy of Economic Studies - Bucharest, Romania Contact information at EDIRC.
Bibliographic data for series maintained by Paul Pocatilu ().

 
Page updated 2025-03-19
Handle: RePEc:aes:infoec:v:15:y:2011:i:1:p:151-159