Security modelling for risk analysis

Lam-for Kwok, Dennis Longley

Research output: Chapters, Conference Papers, Creative and Literary WorksRGC 32 - Refereed conference paper (with host publication)peer-review

6 Citations (Scopus)

Abstract

A security model to facilitate the recording and investigation of organizational security data is proposed; this model employs a directory structure for security entities and relationships. The model database with associated software may then be employed to develop and display organisational threat networks representing the risk environment of the organisational information processing and communication system. Thereafter the design of the defence systems may be facilitated by interactive procedures to determine appropriate countermeasure structures. © 2004 by Springer Science+Business Media Dordrecht.
Original languageEnglish
Title of host publicationSecurity and Protection in Information Processing systems
PublisherSpringer New York
Pages29-45
Volume147
ISBN (Print)9781475780161
DOIs
Publication statusPublished - 2004
EventIFIP TC11 19th International Information Security Conference, SEC 2004 - Toulouse, France
Duration: 22 Aug 200427 Aug 2004

Publication series

NameIFIP Advances in Information and Communication Technology
Volume147
ISSN (Print)1868-4238

Conference

ConferenceIFIP TC11 19th International Information Security Conference, SEC 2004
Country/TerritoryFrance
CityToulouse
Period22/08/0427/08/04

Research Keywords

  • Countermeasures
  • Risk analysis
  • Security documentation
  • Security models
  • Security standards
  • Threat trees

Fingerprint

Dive into the research topics of 'Security modelling for risk analysis'. Together they form a unique fingerprint.

Cite this