Optimization of a Computer Security Index Versus Cost,
Abstract
In this paper, we propose a computer security index for measuring the security of computer systems and a strategy for purchasing computer security countermeasures in a cost effective manner. Required inputs for the model include definition of threats and countermeasures, relative importance of threats, costs of countermeasures, and the effectiveness of each countermeasure against each of the threats listed. If a standardized list of threats and countermeasures can be developed, the computer security index could also be used to compare the security of different computer systems. (Author)
Document Details
- Document Type
- Technical Report
- Publication Date
- Jun 01, 1978
- Accession Number
- ADA062003
Entities
People
- Richard P. Wissing
Organizations
- United States Department of Defense