Cristin-resultat-ID: 1274423
Sist endret: 24. september 2015, 21:59
Resultat
Vitenskapelig Kapittel/Artikkel/Konferanseartikkel
2006

A Graphical Approach to Risk Identification, Motivated by Empirical Investigations

Bidragsytere:
  • Ida Hogganvik og
  • Ketil Stølen

Bok

Om resultatet

Vitenskapelig Kapittel/Artikkel/Konferanseartikkel
Publiseringsår: 2006
Hefte: 4199
Sider: 574 - 588
ISBN:
  • 9783540457725

Importkilder

SINTEF AS-ID: S781

Beskrivelse Beskrivelse

Tittel

A Graphical Approach to Risk Identification, Motivated by Empirical Investigations

Sammendrag

We propose a graphical approach to identify, explain and document security threats and risk scenarios. Security risk analysis can be time consuming and expensive, hence, it is of great importance that involved parties quickly understand the risk picture. Risk analysis methods often make use of brainstorming sessions to identify risks, threats and vulnerabilities. These sessions involve system users, developers and decision makers. They typically often have completely different backgrounds and view the system from different perspectives. To facilitate communication and understanding among them, we have developed a graphical approach to document and explain the overall security risk picture. The development of the language and the guidelines for its use have been based on a combination of empirical investigations and experiences gathered from utilizing the approach in large scale industrial field trials. The investigations involved both professionals and students, and each field trial was in the order of 250 person hours.

Bidragsytere

Ida Hogganvik

  • Tilknyttet:
    Forfatter
    ved Sustainable Communication Technologies ved SINTEF AS

Ketil Stølen

  • Tilknyttet:
    Forfatter
    ved Sustainable Communication Technologies ved SINTEF AS
1 - 2 av 2

Resultatet er en del av Resultatet er en del av

Model Driven Engineering Languages and Systems, Proceedings.

2006, Springer. Vitenskapelig antologi/Konferanseserie
1 - 1 av 1