IT Risk Assessment: Quantitative and Qualitative Approach

被引:0
|
作者
Rot, Artur [1 ]
机构
[1] Wroclaw Univ Econ, Business Informat Inst, Dept Management Informat Syst Engn, Wroclaw, Poland
关键词
IT risk; IT security risk analysis methods; qualitative risk assessment methods; quantitative risk assessment methods;
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
IT risk management currently plays more and more important role in almost all aspects of contemporary organizations' functionality. It requires reliable and cyclical realization of its key task which is risk analysis. Literature of subject presents problems of risk analysis in different way, the most often skipped or selectively treated the problem of quantitative methods application for the purpose of risk analysis. The article presents the issue of one of the most significant stages of risk analysis which is IT risk assessment, especially focusing on chosen quantitative methods such as ALE (Annual Loss Eypected) method, Courtney method, Fisher's method, using survey research ISRAM model (Information Security Risk Analysis Method) and other derived ratios. There were also shortly presented chosen qualitative methods - FMEA (Failure Mode and Effects Analysis) and FMECA (Failure Mode and Effects Criticality Analysis), NIST SP 800-30 method and CRAMM methodology.
引用
收藏
页码:1073 / 1078
页数:6
相关论文
共 50 条
  • [21] Assessment of Student Understanding in Physics: An Integrated Qualitative and Quantitative Approach
    Larkin, Teresa L.
    2011 ASEE ANNUAL CONFERENCE & EXPOSITION, 2011,
  • [22] A Qualitative and Quantitative Assessment
    Singh, Sanjeev
    Charani, Esmita
    Wattal, Chand
    Arora, Anita
    Jenkins, Abi
    Nathwani, Dilip
    ANTIBIOTICS-BASEL, 2019, 8 (01):
  • [23] A Heuristic Approach for Qualitative Risk Assessment and Treatment Model
    Sana, Javaria
    Islam, M. Hasan
    Fayyaz, Bushra
    JOURNAL OF INFORMATION ASSURANCE AND SECURITY, 2011, 6 (02): : 81 - 88
  • [24] Qualitative-Quantitative Bayesian Belief Networks for Reliability and Risk Assessment
    Wang, Chengdong
    Mosleh, Ali
    ANNUAL RELIABILITY AND MAINTAINABILITY SYMPOSIUM, 2010 PROCEEDINGS, 2010,
  • [25] Quantitative vs. qualitative treatment of uncertain assumptions in risk assessment
    Berner, C.
    Flage, R.
    SAFETY AND RELIABILITY: METHODOLOGY AND APPLICATIONS, 2015, : 2321 - 2328
  • [26] QUALITATIVE AND QUANTITATIVE EXPERIMENTAL-MODELS TO AID IN RISK ASSESSMENT FOR IMMUNOTOXICOLOGY
    LUSTER, MI
    PAIT, DG
    PORTIER, C
    ROSENTHAL, GJ
    GERMOLEC, DR
    COMMENT, CE
    MUNSON, AE
    WHITE, K
    POLLOCK, P
    TOXICOLOGY LETTERS, 1992, 64-5 : 71 - 78
  • [27] Integration of qualitative and quantitative risk assessment methods for gas refinery plants
    Hyungjoon Yoon
    Jaedeuk Park
    Wonsub Lim
    Kwanghee Lee
    Nakki Choi
    Chuljae Lee
    Il Moon
    Korean Journal of Chemical Engineering, 2013, 30 : 1368 - 1374
  • [28] Integration of qualitative and quantitative risk assessment methods for gas refinery plants
    Yoon, Hyungjoon
    Park, Jaedeuk
    Lim, Wonsub
    Lee, Kwanghee
    Choi, Nakki
    Lee, Chuljae
    Moon, Il
    KOREAN JOURNAL OF CHEMICAL ENGINEERING, 2013, 30 (07) : 1368 - 1374
  • [30] Qualitative and quantitative assessment of the risk from the exposure to fetotoxic chemical compounds
    Talwalker, S.
    Patil, G. P.
    Taillie, C.
    ENVIRONMENTAL AND ECOLOGICAL STATISTICS, 1995, 2 (01) : 71 - 78