Show simple item record

dc.contributor.authorBraband, Jens
dc.contributor.editorMeier, Michael
dc.contributor.editorReinhardt, Delphine
dc.contributor.editorWendzel, Steffen
dc.date.accessioned2017-06-21T07:43:28Z
dc.date.available2017-06-21T07:43:28Z
dc.date.issued2016
dc.identifier.isbn978-3-88579-650-3
dc.identifier.issn1617-5468
dc.description.abstractRecently, a novel approach towards semi-quantitative IT security risk assessment has been proposed in the draft IEC 62443-3-2. This approach is analyzed from several different angles, e.g. embedding into the overall standard series, semantic and methodological aspects. As a result, several systematic flaws in the approach are exposed. As a way forward, an alternative approach is proposed which blends together semi-quantitative risk assessment as well as threat and risk analysis.en
dc.language.isoen
dc.publisherGesellschaft für Informatik e.V.
dc.relation.ispartofSicherheit 2016 - Sicherheit, Schutz und Zuverlässigkeit
dc.relation.ispartofseriesLecture Notes in Informatics (LNI) - Proceedings, Volume P-256
dc.titleWhy 2 times 2 ain't neccessarily 4 - at least not in IT security risk assessmenten
dc.typeText/Conference Paper
dc.pubPlaceBonn
mci.reference.pages1-10
mci.conference.locationBonn
mci.conference.date5.-7. April 2016


Files in this item

Thumbnail

Show simple item record