The Common Risk Model for Dams: A Portfolio Approach to Security Risk Assessments
Abstract
The Common Risk Model for Dams (CRM-D) is a consistent, mathematically rigorous, and easy to implement method for security risk assessment of dams, navigation locks, hydropower projects, and similar infrastructures. The methodology provides a systematic approach for evaluating and comparing security risks across a large portfolio. Risk is calculated for attack scenarios (specific adversary using a specific attack vector against a specific target) by combining consequence, vulnerability, and threat estimates in a way that properly accounts for the relationships among these variables. The CRM-D can effectively quantify the benefits of implementing a particular risk mitigation strategy and, consequently, enable return-on-investment analyses for multiple mitigation alternatives across a large portfolio.
Document Details
- Document Type
- Technical Report
- Publication Date
- Jun 01, 2013
- Accession Number
- ADA603232
Entities
People
- Enrique E. Matheu
- J. D. Morgeson
- Jason A. Dechant
- M. A. Fainberg
- Victor A. Utgoff
- Yazmin Seda-sanabria
- Yev Kirpichevsky
Organizations
- Institute for Defense Analyses