Collection of quantitative data on security incidents

2Citations
Citations of this article
23Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Quantitative data about security threats is a precondition for a precise assessment of security risks and consequently for an efficient management of information security. Currently such data is hardly available, especially for small and medium-sized organizations. In this paper we discuss different ways of gathering quantitative data and present a new approach for the collection of historical data on security incidents. We propose a platform that collects, aggregates and evaluates data on security incidents from multiple organizations. We identify basic requirements for such a platform and show approaches for satisfying them. We especially emphasize the aspects of security and fairness. Finally we introduce a prototype that shows how an implementation could look like. © 2007 IEEE.

Cite

CITATION STYLE

APA

Nowey, T., & Federrath, H. (2007). Collection of quantitative data on security incidents. In Proceedings - Second International Conference on Availability, Reliability and Security, ARES 2007 (pp. 325–332). IEEE Computer Society. https://doi.org/10.1109/ARES.2007.57

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free