2022Unpublished venueRequires access

Unraveling the establishment of residual risk in cybersecurity

Isaac D. Sánchez-García, Tomás San Feliú, Jose A. Calvo‐Manzano

Open publisher page 0 citations

Abstract

This paper addresses the background, concepts, related variables, and current problems related to the calculation of Residual Risk (RR) in cybersecurity management systems. The objective of this paper is to clarify the concept of residual risk and identify the main problems that prevent the establishment of an adequate residual risk calculation at the organizational level and to provide possible solutions to this problem that will serve as a starting point for both practitioners and researchers in measuring the effectiveness of the countermeasures applied.

About this research paper

What this paper is about

This paper addresses the background, concepts, related variables, and current problems related to the calculation of Residual Risk (RR) in cybersecurity management systems. The objective of this paper is to clarify the concept of residual risk and identify the main problems that prevent the establishment of an adequate residual risk calculation at the organizational level and to provide possible solutions to this problem that will serve as a starting point for both practitioners and researchers in measuring the effectiveness of the countermeasures applied.

Why it matters

A significance statement is not available in the OpenAlex record.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

This paper addresses the background, concepts, related variables, and current problems related to the calculation of Residual Risk (RR) in cybersecurity management systems. The objective of this paper is to clarify the concept of residual risk and identify the main problems that prevent the establishment of an adequate residual risk calculation at the organizational level and to provide possible solutions to this problem that will serve as a starting point for both practitioners and researchers in measuring the effectiveness of the countermeasures applied.

Key concepts: Residual, Residual risk, Risk analysis (engineering), Risk management, Computer science, Computer security, Point (geometry), Risk assessment

Related papers

Back to paper searchBrowse research topicsOriginal source
Unraveling the establishment of residual risk in cybersecurity — Research Paper | ScholarLens