A METRIC MODEL FOR RANKING THE SECURITY STRENGTH OF A WEB PAGE
George Emeka Okereke, Charles C. Osuagwu · 2012
It is common knowledge that any system or process that cannot be measured cannot be managed. This wisdom also applies to security as well. As much as the expansion of use of Information Technology (IT) in various processes is increasing, the question of security readily comes to mind often. Today we see various new ICT products and applications appearing in the market daily via web sites. Again, cases of Web security breaching are also on the increase since the Internet is accessible from any where. We see reports in the national dailies about the terms like hacking or other security breaching very common words. The concept of Computer Security in general is being heavily researched and this perfectly makes sense in a world where e-commerce and e-governance are becoming the standard. Security metrics are assuming tremendous importance as they are vital for assessing the current security status, to develop operational best practices and for guiding future security research. Security metrics is especially very important nowadays when organizations and enterprises are coming under increasing compliance pressure requiring them to demonstrate due diligence when protecting their data assets, products, services and their customers. In these circumstances metrics can enlighten organizations and enterprises to prioritize threats and vulnerabilities and the level of risks they pose to