How to assess confidentiality requirements of corporate assets?

2Citations
Citations of this article
12Readers
Mendeley users who have this article in their library.

This article is free to access.

Abstract

Confidentiality is an important property that organizations relying on information technology have to preserve. The purpose of this work is to provide a structured approach for identifying confidentiality requirements. A key step in the information security risk management process is the determination of the impact level arisen from a loss of confidentiality, integrity or availability. We deal here with impact level determination regarding confidentiality by proposing a method to calculate impact levels based on the different kind of consequences typically arisen from threats. The proposed approach assesses the impact arisen from confidentiality losses on different areas separately and uses a parameterized model that allows organizations to adjust it according to their specific needs. A validation of the developed approach has been conducted in a small software development company.

Cite

CITATION STYLE

APA

Cervantes, G. V., & Fenz, S. (2014). How to assess confidentiality requirements of corporate assets? In IFIP Advances in Information and Communication Technology (Vol. 428, pp. 234–241). Springer Science and Business Media, LLC. https://doi.org/10.1007/978-3-642-55415-5_19

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free