Comparative Study of Information Security Risk Assessment Frameworks

Umesh Kumar Singh, Chanchala Joshi · INTERNATIONAL JOURNAL OF COMPUTER APPLICATION · 2018

With the increasing need of securing organization's computing environment, a security risks management framework is essentially needed that define the security risks management process accurately.In this regard, numerous risks management frameworks have been developed, and many more are emerging every day.They all have very different perspectives and addressing problems differently, though with the same basic goal of risks mitigation in direction of information security.Information is a critical asset for every organization and hence development and implementation of strategic plans for information security risks mitigation should be an essential part of every organizations operation.This paper compares and analyzes the different activities, inputs and outputs required by each information security risk assessment models.The primary goal of the paper is to identify which information security risk assessment model assesses information security risk effectively.The comparative study helps in evaluating the models' applicability to an organization and their specific needs.

Read the paper · More papers on PaperTik