Implementing Security Metrics Initiatives
نویسندگان
چکیده
lthough Global 2000 organizations today are becoming increasingly aware of the importance of a metrics program to maximize the effectiveness of an information security strategy, there’s little guidance available around the practical “how to’s” of putting such a program into practice. As a result, security metrics are shrouded in mystery and are considered “too hard” to do — with the end result being that this necessary and effective management tool has yet to be implemented at many organizations, and in the organizations where it has been launched, it has yet to be automated to ease management and reduce resource costs. As security spending continues to rise, industry analysts contend that metrics initiatives will become critical to managing and understanding the impact of security programs. According to the Yankee Group’s “2005 U.S. Network Management Survey,” companies will spend $16.9 billion on IT management, of which one-fifth will be devoted to security. Metrics and measurement are being highlighted as ways for organizations to meaningfully assess the effectiveness of IT security programs.
منابع مشابه
Delving Into the Details of Evaluating Public Engagement Initiatives; Comment on “Metrics and Evaluation Tools for Patient Engagement in Healthcare Organization- and System-Level Decision-Making: A Systematic Review”
Initiatives to engage the public in health policy decisions have been widely endorsed and used, yet agreed upon methods for systematically evaluating the effectiveness of these initiatives remain to be developed. Dukhanin, Topazian, and DeCamp have thus developed a useful taxonomy of evaluation criteria derived from a systematic review of published evaluation tools that might serve as the basis...
متن کاملLessons Learned In Implementing Agile Software Development Metrics
The conventional software metrics are not directly adaptable to agile approach due to their intrinsic differences in the focus, goals and process of software development. Subsequently, this paper examines the current state of agile-metrics initiatives in a specific product line of a multinational technology company. Using qualitative interviews based data from five stakeholders the study examin...
متن کاملFraming Child Nutrition in Developing Countries: A Human Security Perspective
Child deaths due to the insidious malnutrition epidemic are a seminal challenge to human security in low and middle-income countries. In addition to hunger interfering with human potential, poor nutritional status leads to long-term health inequalities and disabling conditions. Reducing child mortality is one of the Millennium Developmental Goals, and one of the primordial processes to achieve ...
متن کاملInformation Security Behavior: Factors and Research Directions
This study presents an extensive literature review on information security behavior in the context of factors affecting security behavior of users in organizational environments. The study critically analyzes articles in the information security behavior and brings forward 18 themes for security practitioners and researchers to consider in implementing information security initiatives. The find...
متن کاملSecurity Evaluation Expert System
Software is an important resource. It contains and controls data and other resources. Thus measures must be taken to protect that data and resources. Thus Software Metrics are measurement of some properties of a piece of software or its specifications. Metrics are very important in Software Quality Measurement. Since Tom De Marco rightly stated “You can’t control what you can’t measure.” Softwa...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
- Information Systems Security
دوره 15 شماره
صفحات -
تاریخ انتشار 2006