An information systems security risk assessment model under uncertain environment

2011 ◽  
Vol 11 (7) ◽  
pp. 4332-4340 ◽  
Author(s):  
Nan Feng ◽  
Minqiang Li
2011 ◽  
Vol 467-469 ◽  
pp. 481-486
Author(s):  
Nan Feng ◽  
Jing Xie ◽  
Ying Xin Wu

In electronic business environment, it is critical for an enterprise to assess information systems security (ISS) risks. In this paper, we propose a hybrid approach for ISS risk assessment. Given there is a great deal of uncertainty in the ISS risk assessment, in the hybrid approach, we combine the evidence theory with fuzzy sets to deal with the uncertain evidence found in the ISS risk assessment. The proposed approach provides a new way to define the basic belief assignment in fuzzy measure. Moreover, the approach also provides a method of testing the evidential consistency, which can reduce the uncertainty derived from the conflicts of evidence. Finally, the approach is further demonstrated and validated via a case study, in which the effectiveness of the proposed approach is evaluated by comparing it with other methods.


2013 ◽  
Vol 380-384 ◽  
pp. 2534-2538
Author(s):  
Zhao Zhang ◽  
Fang Yong

On the basis of threat analysis, the paper proposes a security risk assessment model for government portal website. Using the model, the paper systematically analyzes the security risk of government portal websites and then explains the reason of them. To enhance the security of government portal websites, both technical and administrative strategies were proposed. Those security strategies help improve the image of the government and it plays an important role in constructing service government.


Sign in / Sign up

Export Citation Format

Share Document