How Much Security Is Enough

Abstract

This article provides guidelines for answering this question, including strategy questions to ask, organizational and market characteristics to take into account, and means for determining adequate security based on risk. It is important to make sure that leaders understand the residual risk that remains after mitigating actions are taken.

Open PDF

Document Details

Document Type
Technical Report
Publication Date
Nov 01, 2009
Accession Number
AD1180036

Entities

People

  • Julia H. Allen

Organizations

  • Carnegie Mellon University

Tags

DTIC Thesaurus Topics

  • Best Practices
  • Business Administration
  • Commerce
  • Copyrights
  • Deployment
  • Electronic Commerce
  • Engineering
  • Governments
  • Guarantees
  • Homeland Security
  • Information Security
  • Infrastructure
  • Intellectual Property
  • Internet
  • Knowledge Management
  • Management Personnel
  • Materials
  • Organizational Structure
  • Residuals
  • Risk
  • Risk Management
  • Security
  • Software Development
  • Unauthorized Disclosure
  • Universities

Readers

  • Cybersecurity.
  • Systems Analysis and Design