INFORMATION SECURITY AND RISK MANAGEMENT.

The article focuses on information security and risk management. The perceived composite risk (PCR) is a composite metric that focuses on the aspects of information security risk including expected loss, expected severe loss, and standard deviation of the loss. Moreover, it provides the user powerfu...

Descripción completa

Detalles Bibliográficos
Publicado en:Communications of the ACM Vol. 51; no. 4; pp. 64 - 69
Autores principales: BODIN, LAWRENCE D., GORDON, LAWRENCE A., LOEB, MARTIN P.
Formato: Artículo
Publicado: Association for Computing Machinery Apr2008
Materias:
Acceso en línea:Ver este registro en EBSCOhost
fields @attributes:
  recordID: 1
pdfLink:
plink: https://search.ebscohost.com/login.aspx?direct=true&db=hlh&AN=31663008&site=ehost-live
header:
  @attributes:
    shortDbName: hlh
    uiTerm: 31663008
    longDbName: Humanities International Complete
    uiTag: AN
  controlInfo:
    bkinfo:
    jinfo:
      jid:
        00010782
        ACM
      jtl: Communications of the ACM
      issn: 00010782
      maglogo: N
    pubinfo:
      dt: Apr2008
      vid: 51
      iid: 4
      pid: 68
      pub: Association for Computing Machinery
    artinfo:
      ui:
        31663008
        10.1145/1330311.1330325
      ppf: 64
      ppct: 5
      formats:
      tig:
        atl: INFORMATION SECURITY AND RISK MANAGEMENT.
      aug:
        au:
          BODIN, LAWRENCE D.
          GORDON, LAWRENCE A.
          LOEB, MARTIN P.
        affil:
          Professor Emeritus, Robert H. Smith School of Business, University of Maryland, College Park, MD
          Ernst & Young Alumni Professor of Managerial Accounting and Information Assurance, Robert H. Smith School of Business, University of Maryland, College Park
          Professor of accounting and information assurance and Deloitte & Touche faculty fellow, Robert H. Smith School of Business, University of Maryland, College Park
      su:
        Risk management in business
        Information services security measures
        Computer security
        Data protection
        Security systems
        Access to information
        Data security
        Database security
        Database management
      sug:
        subj:
          Risk management in business
          Information services security measures
          Computer security
          Data protection
          Security systems
          Access to information
          Data security
          Database security
          Database management
      ab: The article focuses on information security and risk management. The perceived composite risk (PCR) is a composite metric that focuses on the aspects of information security risk including expected loss, expected severe loss, and standard deviation of the loss. Moreover, it provides the user powerful tools for examining proposals for enhancement of an organization's information security system. Meanwhile, it is recommended to use Analytic Hierarchy Process (AHP) in determining the weights in the PCR.
      pubtype: Periodical
      doctype: Article
      src: R
    language: English
    refInfo:
    copyright:
      @attributes:
        flag: Y
      dt:
        @attributes:
          year: 2008
    holdings:
      @attributes:
        islocal: N