کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
456385 695706 2016 17 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
Information assurance techniques: Perceived cost effectiveness
ترجمه فارسی عنوان
تکنیک های اطمینان اطلاعات: اثربخشی هزینه درک شده
کلمات کلیدی
امنیت، تکنیک های اطمینان، ادراکات، ارزیابی امنیت، اثربخشی، هزینه بهره وری
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
چکیده انگلیسی

The assurance technique is a fundamental component of the assurance ecosystem; it is the mechanism by which we assess security to derive a measure of assurance. Despite this importance, the characteristics of these assurance techniques have not been comprehensively explored within academic research from the perspective of industry stakeholders. Here, a framework of 20 “assurance techniques” is defined along with their interdependencies. A survey was conducted which received 153 responses from industry stakeholders, in order to determine perceptions of the characteristics of these assurance techniques. These characteristics include the expertise required, number of people required, time required for completion, effectiveness and cost. The extent to which perceptions differ between those in practitioner and management roles is considered. The findings were then used to compute a measure of cost-effectiveness for each assurance technique. Survey respondents were also asked about their perceptions of complementary assurance techniques. These findings were used to establish 15 combinations, of which the combined effectiveness and cost-effectiveness was assessed.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Computers & Security - Volume 60, July 2016, Pages 117–133
نویسندگان
, , , , ,