Verification, Validation, and Evaluation in Information Security Risk Management

Stefan Fenz, Andreas Ekelhart · IEEE Security & Privacy · 2010

By surveying verification, validation, and evaluation methods referenced in information security risk management (ISRM) literature, the authors discuss in which ISRM phases particular methods should be applied and demonstrate appropriate methods with a real-world example.

Read the paper · More papers on PaperTik