To main content

An Integrated Approach for Compliance and Security Risk Assessment

Abstract

Organizations that rely on ICT infrastructures need to maintain a high level of information security and protection from cyber-attacks. This is not only due to the self-interest of protecting business critical infrastructures; it is also due to laws that deal with information security. For this reason, technical and legal risks often need to be understood in combination. The RASEN project proposes an approach to integrate compliance and security risk assessment.

Category

Feature article (op-ed)

Language

English

Author(s)

  • Samson Yoseph Esayas
  • Tobias Mahler
  • Bjørnar Solhaug

Affiliation

  • SINTEF Digital / Sustainable Communication Technologies
  • University of Oslo

Year

2015

Volume

121

Page(s)

32 - 35

View this publication at Norwegian Research Information Repository