dc.creatorOlsina Santos, Luis Antonio
dc.creatorPesotskaya, Elena
dc.creatorDieser, Alexander
dc.creatorCovella, Guillermo Juan
dc.date2013-09
dc.date2013
dc.date2019-06-14T11:44:47Z
dc.identifierhttp://sedici.unlp.edu.ar/handle/10915/76486
dc.identifierhttp://42jaiio.sadio.org.ar/proceedings/simposios/Trabajos/ASSE/13.pdf
dc.identifierissn:1850-2792
dc.descriptionAn IT security vulnerability can be considered as an inherent weakness in a target system that could be exploited by a threat source. The underlying hypothesis in our proposal is that each identified attribute associated with the target entity to be controlled should show the highest quality satisfaction level as an elementary indicator. The higher the quality indicator value achieved per each attribute, the lower the vulnerability indicator value and therefore the potential impact from the risk standpoint. In the present work, we discuss the added value of supporting the IT security and risk assessment areas with measurement and evaluation (M&E) methods and strategy, which are based on metrics and indicators. Also we illustrate excerpts of an M&E case study for characteristics and attributes of Security, and their potential risk assessment.
dc.descriptionSociedad Argentina de Informática e Investigación Operativa (SADIO)
dc.formatapplication/pdf
dc.format168-182
dc.languageen
dc.rightshttp://creativecommons.org/licenses/by-nd/3.0/
dc.rightsCreative Commons Attribution-NoDerivs 3.0 Unported (CC BY-ND 3.0)
dc.subjectCiencias Informáticas
dc.subjectsecurity vulnerability
dc.subjectquality indicator
dc.subjectMeasurements
dc.subjectEvaluation/methodology
dc.titleBridging the Gap between Security/Risk and Quality
dc.typeObjeto de conferencia
dc.typeObjeto de conferencia


Este ítem pertenece a la siguiente institución