Quantitative Model for Economic Analyses of Information Security Investment in an Enterprise Information System
Bojanc Rok () and
Jerman-Blažič Borka ()
Additional contact information
Bojanc Rok: ZZI, Pot k sejmišču 33, 1231 Ljubljana-Črnuče, Slovenia
Jerman-Blažič Borka: Jožef Stefan Institute, Jamova 39, 1000 Ljubljana, Slovenia
Organizacija, 2012, vol. 45, issue 6, 276-288
Abstract:
The paper presents a mathematical model for the optimal security-technology investment evaluation and decision-making processes based on the quantitative analysis of security risks and digital asset assessments in an enterprise. The model makes use of the quantitative analysis of different security measures that counteract individual risks by identifying the information system processes in an enterprise and the potential threats. The model comprises the target security levels for all identified business processes and the probability of a security accident together with the possible loss the enterprise may suffer. The selection of security technology is based on the efficiency of selected security measures. Economic metrics are applied for the efficiency assessment and comparative analysis of different protection technologies. Unlike the existing models for evaluation of the security investment, the proposed model allows direct comparison and quantitative assessment of different security measures. The model allows deep analyses and computations providing quantitative assessments of different options for investments, which translate into recommendations facilitating the selection of the best solution and the decision-making thereof. The model was tested using empirical examples with data from real business environment.
Keywords: Modelling; Security Technology; Economic metrics; Investment; Enterprise Information System (search for similar items in EconPapers)
Date: 2012
References: Add references at CitEc
Citations:
Downloads: (external link)
https://doi.org/10.2478/v10051-012-0027-z (text/html)
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:vrs:organi:v:45:y:2012:i:6:p:276-288:n:2
DOI: 10.2478/v10051-012-0027-z
Access Statistics for this article
Organizacija is currently edited by Jože Zupančič
More articles in Organizacija from Sciendo
Bibliographic data for series maintained by Peter Golla ().