Risk evaluation

0Citations
Citations of this article
52Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Risk evaluation is the process of comparing the results of the risk analysis with the risk evaluation criteria defined during the context establishment to determine whether the cyber-risks are acceptable. We also need to consider whether some risks that we have regarded as separate actually are instances of the same risk and therefore should be aggregated and evaluated as one risk. Furthermore, as preparation for the risk treatment, we group risks according to relationships such as shared vulnerabilities or threats. This chapter demonstrates risk evaluation, risk aggregation and risk grouping of the running example based on the risk analysis results obtained in Chap. 8.

Cite

CITATION STYLE

APA

Refsdal, A., Solhaug, B., & Stølen, K. (2015). Risk evaluation. In SpringerBriefs in Computer Science (Vol. 0, pp. 91–96). Springer. https://doi.org/10.1007/978-3-319-23570-7_9

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free