A Survey of Information Security Risk Evaluation
Zhenzhen Wang
Abstract
Zhenzhen Wang
Abstract
In information age the purpose of information risk management is to balance security cost and security level , control risk to a acceptable extent, and protect information and relative assets The two important aspects and technological research hotspots. of information risk management includes risk evaluation and risk control. This paper discusses the conception and common criteria for information system risk management, and introduces the most popular methods in the information evaluation and risk control field, including the aspects for in-depth research.
A significance statement is not available in the OpenAlex record.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
In information age the purpose of information risk management is to balance security cost and security level , control risk to a acceptable extent, and protect information and relative assets The two important aspects and technological research hotspots. of information risk management includes risk evaluation and risk control. This paper discusses the conception and common criteria for information system risk management, and introduces the most popular methods in the information evaluation and risk control field, including the aspects for in-depth research.
Key concepts: Information security management, Computer science, Risk management information systems, Risk analysis (engineering), Information security, IT risk management, Risk management, Factor analysis of information risk