Memorias de investigación
Communications at congresses:
A Fuzzy Approach based on Dynamic Programming and Metaheuristics for Selecting Safeguards for Risk Management for Information Systems
Year:2014

Research Areas
  • Engineering

Information
Abstract
In this paper we focus on the selection of safeguards in a fuzzy risk analysis and management methodology for information systems (IS). Assets are connected by dependency relationships, and a failure of one asset may affect other assets. After computing impact and risk indicators associated with previously identified threats, we identify and apply safeguards to reduce risks in the IS by minimizing the transmission probabilities of failures throughout the asset network. However, as safeguards have associated costs, the aim is to select the safeguards that minimize costs while keeping the risk within acceptable levels. To do this, we propose a dynamic programming-based method that incorporates simulated annealing to tackle optimizations problems.
International
Si
Congress
3rd International Conference on Operations Research and Enterprise Systems
960
Place
Angers, Francia
Reviewers
Si
ISBN/ISSN
978-989-758-017-8
Start Date
06/03/2014
End Date
08/03/2014
From page
35
To page
45
Proceedings of the 3rd International Conference on Operations Research and Enterprise Systems
Participants

Research Group, Departaments and Institutes related
  • Creador: Grupo de Investigación: Grupo de análisis de decisiones y estadística
  • Departamento: Inteligencia Artificial