119458

A Comparative Survey for Evaluating Information Security Risk Assessment Methods

Article

Last updated: 04 Jan 2025

Subjects

-

Tags

تکنولوجيات المعلومات والاتصالات Information Technology and Communications
علوم الحاسباتComputer Sciences .
نظم المعلومات Information Systems، وما يتفرع منها من قواعد البيانات DBs، مستودعات البيانات DWs، و بحيرات البيانات DLs إلخ.
نظم المعلومات الإدارية MIS، ونظم معلومات الأعمال BIS، نظم دعم القرارDSS

Abstract

ABSTRACT Information is a key asset for organizations, and reducing the risk of information compromise is a high priority. There are already many models of risk assessment and more are emerging every day. They all have the same fundamental target, but most attempts to hit the target from very different approaches. Some approaches can be applied to all types of risk; while others are specific to particular risks. There are two common approaches used in risk assessment: a quantitative approach and a qualitative approach. They all have the same fundamental target to estimate the overall value of risk, but most attempts to hit the target from very different approaches. Some approaches can be applied to all types of risk, while others are specific to particular risks. The main purpose of the study is addresses some of the methodologies used currently to analyze information security risks. The main task for an organization is to determine which one to use according to the selecting criteria . Since the organization will spend money on whichever method they choose, it is vital that the chosen methodology meet the requirements. The purpose of the study is to compare and clarify the different model of information security risk assessment and the analysis that effectively addresses the risks of  nformation security. 

DOI

10.21608/jstc.2014.119458

Authors

First Name

Edward

Last Name

Wadid Morcos

MiddleName

-

Affiliation

Sadat Academy for Management Sciences

Email

edward.wadid@sadatacademy.edu.eg

City

-

Orcid

-

Volume

14

Article Issue

الرابع عشر

Related Issue

17882

Issue Date

2014-04-01

Receive Date

2020-10-18

Publish Date

2014-04-01

Page Start

5

Page End

12

Print ISSN

2356-9697

Online ISSN

2735-4350

Link

https://jstc.journals.ekb.eg/article_119458.html

Detail API

https://jstc.journals.ekb.eg/service?article_code=119458

Order

18

Type

• البحوث والدراسات والمقالات المستوفاة للقواعد العلمیة المتعارف علیها، والتى یجریها أو یشارک فى إجرائها أعضاء هیئة التدریس والباحثون فى الجامعات ومراکز البحوث المصریة والعربیة، وذلک باللغتین العربیة والإنجلیزیة .

Type Code

1,502

Publication Type

Journal

Publication Title

مجلة الجمعية المصرية لنظم المعلومات وتکنولوجيا الحاسبات

Publication Link

https://jstc.journals.ekb.eg/

MainTitle

A Comparative Survey for Evaluating Information Security Risk Assessment Methods

Details

Type

Article

Created At

23 Jan 2023