F or years, we’ve been trying to measure se-curity so that we can have objective ways to determine, for example, whether confiden-tial information is really kept confidential, whether data integrity is preserved, whether services will remain available only for authorized users, and whether systems meet stringent reliability require-ments.1 After all, we have many security-related deci-sions to make and often ask a variety of questions that security measurement might answer—from “How much more secure is this application, system, or net-work after we make these changes? ” to “What’s the right mix of controls that will get the most security for a given investment?” Shari Lawrence Pfleeger showed how some exist-ing metrics can help depict our s...
The concept of security metrics is a very important aspect for information security management. Secu...
Measuring security is an important step in creating and deploying secure applications. In order to e...
Systematically managed, sufficient and credible security metrics increase the understanding of the s...
It is a widely accepted management principle that an activity cannot be managed well if it cannot be...
It is a widely accepted management principle that an activity cannot be managed well if it cannot be...
The management of information security becomes easier if suitable metrics can be developed to offer ...
The management of information security becomes easier if suitable metrics can be developed to offer ...
In modern society, security issues of IT Systems are intertwined with interdisciplinary aspects, fro...
Measurement is one of the foundations of sound engineering practices, be-cause-as Tom DeMarco put it...
In this paper, basic issues of measuring security as a system property are discussed. While traditi...
This paper presents an approach to measuring computer security understood as a system property, in t...
This paper begins with an introduction to security metrics, describing the need for security metrics...
Quantification of information security can be used to obtain evidence to support decision-making abo...
Quantification of information security can be used to obtain evidence to support decision-making abo...
Security metrics and measurement is a sub-field of broader information security field. This field is...
The concept of security metrics is a very important aspect for information security management. Secu...
Measuring security is an important step in creating and deploying secure applications. In order to e...
Systematically managed, sufficient and credible security metrics increase the understanding of the s...
It is a widely accepted management principle that an activity cannot be managed well if it cannot be...
It is a widely accepted management principle that an activity cannot be managed well if it cannot be...
The management of information security becomes easier if suitable metrics can be developed to offer ...
The management of information security becomes easier if suitable metrics can be developed to offer ...
In modern society, security issues of IT Systems are intertwined with interdisciplinary aspects, fro...
Measurement is one of the foundations of sound engineering practices, be-cause-as Tom DeMarco put it...
In this paper, basic issues of measuring security as a system property are discussed. While traditi...
This paper presents an approach to measuring computer security understood as a system property, in t...
This paper begins with an introduction to security metrics, describing the need for security metrics...
Quantification of information security can be used to obtain evidence to support decision-making abo...
Quantification of information security can be used to obtain evidence to support decision-making abo...
Security metrics and measurement is a sub-field of broader information security field. This field is...
The concept of security metrics is a very important aspect for information security management. Secu...
Measuring security is an important step in creating and deploying secure applications. In order to e...
Systematically managed, sufficient and credible security metrics increase the understanding of the s...