A new Evaluation Criteria for Effective Security Awareness in Computer Risk Management based on AHP

Nasrin Badie, Arash Habibi Lashkari · 2012

Any security system, no matter how well designed and implemented, will have to rely on people. The fact that human factors play a crucial part in the majority of accidents is a troubling feature of modern “security know-how”. The main goal of this paper is to out the most important risk and execute a security awareness program regarding that risk in purpose of increase of effectiveness of security awareness program and as a result decrease of risk. In this research, for finding the relationship between lack of awareness and computer security risk, a ranking of risk done by using the Analytical Hierarchy Process (AHP) beside quantitative research that use for declaration of security awareness level and finding of correlation of risk and human factors. Finally a new completed criterion for evaluating the security awareness on computer risk management has proposed based on the major attack and related weights.

Read the paper · More papers on PaperTik