Security risk assessment methodology for communities (RAM-C)

被引:1
|
作者
Jaeger, C [1 ]
机构
[1] Sandia Natl Labs, Secur Syst & Technol Ctr, Albuquerque, NM 87185 USA
关键词
D O I
10.1109/CCST.2004.1405377
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Sandia National Laboratories (SNL) has developed a number of security risk assessment methodologies (RAMs) for various infrastructures including dams, water systems, electrical transmission, chemical facilities and communities. All of these RAMs consider potential malevolent attacks from different threats, possible undesired events and consequences and determine potential adversary success. They focus on the assessment of these infrastructures to help identify security weaknesses and develop measures to help mitigate the consequences from possible adversary attacks. This paper will focus on RAM-G, the security risk assessment methodology for communities. There are many reasons for a community to conduct a security risk assessment. They include: providing a way to identify vulnerabilities, helping a community to be better prepared in the event of an adversary attack, providing justification for resources to address identified vulnerabilities and planning for future projects. The RAM-C process is a systematic, risk-based approach to assess vulnerabilities and make decisions based on risk. It has provided valuable information to community planners in making security risk decisions.
引用
收藏
页码:106 / 110
页数:5
相关论文
共 50 条
  • [41] Security Risk Assessment-based Cloud Migration Methodology for Smart Grid OT Services
    Jelacic, Bojan
    Lendak, Imre
    Stoja, Sebastijan
    Stanojevic, Marina
    Rosic, Daniela
    ACTA POLYTECHNICA HUNGARICA, 2020, 17 (05) : 113 - 134
  • [42] Execution of a self-directed risk assessment methodology to address HIPAA data security requirements
    Coleman, J
    MEDICAL IMAGING 2003: PACS AND INTEGRATED MEDICAL INFORMATION SYSTEMS: DESIGN AND EVALUATION, 2003, 5033 : 224 - 231
  • [43] A Risk-Based Methodology and Tool Combining Threat Analysis and Power System Security Assessment
    Ciapessoni, Emanuele
    Cirio, Diego
    Pitto, Andrea
    Marcacci, Pietro
    Lacavalla, Matteo
    Massucco, Stefano
    Silvestro, Federico
    Sforna, Marino
    ENERGIES, 2018, 11 (01):
  • [44] Security and Risk Assessment in the Cloud
    Madria, Sanjay K.
    COMPUTER, 2016, 49 (09) : 110 - 113
  • [45] Integrated risk assessment and security
    Mahutova, K
    Barich, JJ
    CHEMISTRY FOR THE PROTECTION OF THE ENVIRONMENT 4, 2005, 59 : 177 - 182
  • [46] Risk assessment methodology in support of Risk Management
    Ferrante, M
    Baradello, M
    Foltran, D
    SPACE SAFETY AND RESCUE 1997, 1999, 96 : 87 - 97
  • [47] Validation of DSMC Results for Chemically Non-equilibrium Air Flows Against Measurements of the Electron Number Density in RAM-C II Flight Experiment
    Shevyrin, Alexander A.
    Vashchenkov, Pavel V.
    Bondar, Yevgeniy A.
    Ivanov, Mikhail S.
    PROCEEDINGS OF THE 29TH INTERNATIONAL SYMPOSIUM ON RAREFIED GAS DYNAMICS, 2014, 1628 : 155 - 161
  • [48] A Methodology for Dynamic Security Risks Assessment in Interconnected IT Systems
    Fayyad, Seraj
    Alkhatib, Ahmad
    Abdel-Fattah, Farhan
    Almimi, Hani
    JOURNAL OF COMMUNICATIONS SOFTWARE AND SYSTEMS, 2024, 20 (01) : 13 - 22
  • [49] Research on Information Security Asset Value Assessment Methodology
    Yang, Xueqin
    Yang, Peng
    Lin, Honggang
    CYBER SECURITY, CNCERT 2022, 2022, 1699 : 162 - 174
  • [50] Information Security Maturity Level: A Fast Assessment Methodology
    Monteiro, Sergio
    Magalhaes, Joao Paulo
    AMBIENT INTELLIGENCE- SOFTWARE AND APPLICATIONS- 8TH INTERNATIONAL SYMPOSIUM ON AMBIENT INTELLIGENCE (ISAMI 2017), 2017, 615 : 269 - 277