ETRI-Knowledge Sharing Plaform

KOREAN
논문 검색
Type SCI
Year ~ Keyword

Detail

Journal Article 작업 처리율을 고려한 정보 보호 투자 포트폴리오 평가
Cited - time in scopus Download 1 time Share share facebook twitter linkedin kakaostory
Authors
양원석, 김태성, 박현민
Issue Date
2010-04
Citation
정보보호학회논문지, v.20, no.2, pp.109-116
ISSN
1598-3986
Publisher
한국통신정보보호학회 (KIISC)
Language
Korean
Type
Journal Article
Abstract
We consider an information system where its throughput deteriorates due to security threats and evaluate information security investment portfolios. We assume that organizations adopt information security countermeasures (or portfolios consisted of countermeasures) to lessen the damage resulted from the productivity (or throughput) deterioration. A probability model is used to derive the system throughput and the average number of repairs according to the occurrence rate of security threats. Considering the revenue from throughput, the repair cost, and the investment for the security system, the net present value for each portfolio is derived. Organizations can compare information security investment portfolios and select the optimal portfolio.
KSP Keywords
Information systems(IS), Investment portfolio, Optimal portfolio, Probability Model, Repair cost, Security countermeasures, an information system, information security investment, net present value, security system, security threats