2014
DOI: 10.1007/978-3-642-55415-5_19
|View full text |Cite
|
Sign up to set email alerts
|

How to Assess Confidentiality Requirements of Corporate Assets?

Abstract: Confidentiality is an important property that organizations relying on information technology have to preserve. The purpose of this work is to provide a structured approach for identifying confidentiality requirements. A key step in the information security risk management process is the determination of the impact level arisen from a loss of confidentiality, integrity or availability. We deal here with impact level determination regarding confidentiality by proposing a method to calculate impact levels based … Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1

Citation Types

0
1
0

Year Published

2018
2018
2020
2020

Publication Types

Select...
1
1

Relationship

1
1

Authors

Journals

citations
Cited by 2 publications
(1 citation statement)
references
References 8 publications
(5 reference statements)
0
1
0
Order By: Relevance
“…For the integrity of the server room, it is 74 × 0,66 = 48.84, for the availability of the server room it is 21 × 0.43 = 9.03. The integrity and availability impact values are derived from the inventory phase, in which the user has to answer a set of questions regarding the importance of each asset for the company (Cervantes et al , 2014) for further details on the questionnaire approach). The threat probabilities are assessed by checking how much already implemented countermeasures decrease the occurrence probability of relevant threats (residual probability).…”
Section: Inventory and Decision Supportmentioning
confidence: 99%
“…For the integrity of the server room, it is 74 × 0,66 = 48.84, for the availability of the server room it is 21 × 0.43 = 9.03. The integrity and availability impact values are derived from the inventory phase, in which the user has to answer a set of questions regarding the importance of each asset for the company (Cervantes et al , 2014) for further details on the questionnaire approach). The threat probabilities are assessed by checking how much already implemented countermeasures decrease the occurrence probability of relevant threats (residual probability).…”
Section: Inventory and Decision Supportmentioning
confidence: 99%