Abstract
|
|
---|---|
This paper deals with the selection of failure transmission, preventive and palliative safeguards that minimize the maximum risk caused by threats to the assets of an information system (IS) for a given budget. We assume that all the elements in the IS, i.e., the degree of dependence between assets, the valuations of the assets, the severity and requency of the threats, and the effect induced by safeguards, can be valuated using a fuzzy linguistic scale. This is less stressful on experts and suitable for accounting for imprecision and/or vagueness about the inputs. We model and solve the respective fuzzy optimization problem by means of the simulated annealing metaheuristic and give an example to illustrate the safeguard selection process. | |
International
|
Si |
|
10.1007/978-3-319-05951-8_26 |
Book Edition
|
|
Book Publishing
|
Springer |
ISBN
|
978-3-319-05950-1 |
Series
|
|
Book title
|
New Perspectives in Information Systems and Technolgies |
From page
|
267 |
To page
|
276 |