From the Resource to the Business Process Risk Level

被引:0
|
作者
Fenz, S. [1 ,2 ]
机构
[1] Vienna Univ Technol, Vienna, Austria
[2] SBA Res, Vienna, Austria
关键词
Security; Information security risk management; Business process analysis;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Although a variety of information security risk management (ISRM) approaches have been proposed, well-founded methods that provide an answer to the following question are still missing: How can the risk level of a business process be determined by taking the risk levels of the involved resources into account? This paper presents our research results regarding resource-based risk analysis methods in order to assign realistic figures concerning the business process risk level. With regard to business processes the research results allow the (semiautomatic) reasoning of the current security status of an organization. In this way we can support decision makers in selecting appropriate controls to reduce risks to an acceptable level; and also in making a reasonable trade-off between investments into security and the need for protection.
引用
收藏
页码:100 / 109
页数:10
相关论文
共 50 条
  • [1] RESOURCE MODELING IN BUSINESS PROCESS SIMULATION
    Bocciarelli, Paolo
    D'Ambrogio, Andrea
    Wagner, Gerd
    2022 WINTER SIMULATION CONFERENCE (WSC), 2022, : 1296 - 1310
  • [2] Resource Modeling in Business Process Simulation
    Bocciarelli, Paolo
    D'Ambrogio, Andrea
    Wagner, Gerd
    Proceedings - Winter Simulation Conference, 2022, 2022-December : 1296 - 1310
  • [3] Resource Requirements in Business Process Modelling from an Operations Management Perspective
    Goel, Asvin
    Lin, Min-Bin
    2022 IEEE 24TH CONFERENCE ON BUSINESS INFORMATICS (CBI 2022), VOL 2, 2022, : 41 - 48
  • [4] Project-oriented resource assignment: from business process modelling to business process instantiation with operational performance consideration
    Zhou, Y.
    Chen, Y.
    INTERNATIONAL JOURNAL OF COMPUTER INTEGRATED MANUFACTURING, 2008, 21 (01) : 97 - 110
  • [5] On the Complexity of Resource Controllability in Business Process Management
    Zavatteri, Matteo
    Rizzi, Romeo
    Villa, Tiziano
    BUSINESS PROCESS MANAGEMENT WORKSHOPS, BPM 2020 INTERNATIONAL WORKSHOPS, 2020, 397 : 168 - 180
  • [6] Optimized Resource Allocations in Business Process Models
    Ihde, Sven
    Pufahl, Luise
    Lin, Min-Bin
    Goel, Asvin
    Weske, Mathias
    BUSINESS PROCESS MANAGEMENT FORUM, BPM FORUM 2019, 2019, 360 : 55 - 71
  • [7] Promoting resource discovery in business process variability
    Sikal, Rabab
    Sbai, Hanae
    Kjiri, Laila
    PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON NETWORKING, INFORMATION SYSTEMS & SECURITY (NISS19), 2019,
  • [8] Business Process Scheduling with Resource Availability Constraints
    Xu, Jiajie
    Liu, Chengfei
    Zhao, Xiaohui
    Yongchareon, Sira
    ON THE MOVE TO MEANINGFUL INTERNET SYSTEMS: OTM 2010, PT I, 2010, 6426 : 419 - +
  • [9] BUSINESS RISK AND THE AUDIT PROCESS
    BRUMFIELD, CA
    ELLIOTT, RK
    JACOBSON, PD
    JOURNAL OF ACCOUNTANCY, 1983, 155 (04): : 60 - &
  • [10] Reengineering the business process at the strategic level
    Almeida, LT
    MODELLING TECHNIQUES FOR BUSINESS PROCESS RE-ENGINEERING AND BENCHMARKING, 1997, : 144 - 155