Development of a comprehensive methodology for assessing information security risks in a commercial bank
Autor: | Nikolay A. Budanov, Vladimir Dmitrievich Kolychev |
---|---|
Jazyk: | angličtina |
Rok vydání: | 2021 |
Předmět: |
Information theory
Computer science business.industry Mathematical statistics General Medicine Information security Information technology risk assessment information technology commercial bank information system information security tools automated information system T58.5-58.64 Software Risk analysis (engineering) Secondary sector of the economy Information system Automated information system Q350-390 Risk assessment business Reliability (statistics) |
Zdroj: | Bezopasnostʹ Informacionnyh Tehnologij, Vol 28, Iss 2, Pp 83-97 (2021) |
ISSN: | 2074-7136 2074-7128 |
Popis: | This paper discusses the methods of improving the security of the information system of a commercial bank. The subject of the study is a comprehensive methodology for assessing information security used to determine the level of security and risk of information security of an automated system based on predictive estimates and specialized software tools. The purpose of the study and the carried out analysis are to improve the effectiveness of decisions made when performing work on risk assessment and management in a commercial bank. The results presented in the framework of the developed methodology can be used to solve the problems of increasing the reliability of an automated information system in various fields and sectors of activity, including organizations of the industrial sector, as well as commercial organizations. The main approaches used in the development of a comprehensive risk assessment methodology relate to the methods of expert assessment, the theory of random Markov processes, methods and models of mathematical statistics and probability theory, methods of applied system analysis and forecasting. |
Databáze: | OpenAIRE |
Externí odkaz: |