DocumentCode
3506780
Title
Performance Measurement in Cross-Organizational Security Settings
Author
Demetz, Lukas ; Thalmann, Stefan ; Bachlechner, Daniel ; Maier, Ronald
Author_Institution
Sch. of Manage., Inf. Syst., Univ. of Innsbruck, Innsbruck, Austria
fYear
2011
fDate
21-21 Sept. 2011
Firstpage
84
Lastpage
87
Abstract
Measuring IT security management performance is different and usually more difficult than other kinds of measurement. Quantifying IT security in general is difficult, additionally IT infrastructures differ strongly from each other, consist of heterogeneous components and change permanently. However, IT security needs the attention not only from specialized IT security staff, but also from general management. The critical point thus is the development of a set of suitable key performance indicators. This paper describes the creation of a set of performance indicators to be used in cross-organizational security settings on the basis of two qualitative empirical studies. Indicators were developed for organizations acting either as service providers or as service consumers.
Keywords
security of data; IT infrastructures; IT security management performance; cross-organizational security settings; key performance indicators; Interviews; Measurement; Monitoring; Organizations; Security; Standards organizations; KPI; cloud computing; performance; security;
fLanguage
English
Publisher
ieee
Conference_Titel
Security Measurements and Metrics (Metrisec), 2011 Third International Workshop on
Conference_Location
Banff, AB
Print_ISBN
978-1-4673-1245-5
Type
conf
DOI
10.1109/Metrisec.2011.21
Filename
6165768
Link To Document