Title :
Risk management for critical infrastructure protection (CIP) challenges, best practices & tools
Author :
Adar, Eyal ; Wuchner, Andreas
Author_Institution :
ITcon Ltd., Tel Aviv, Israel
Abstract :
Risk management (RM) has become increasingly important in dealing with information and IT security over the past several years. This article aims at discussing the major challenges facing critical infrastructure protection (CIP) RM, and outlines several methods and best practice guidelines that can be used to cope with it, including: creating a RM framework and RM measurement criteria; usage of advanced risk analysis (RA) methods, and adoption of CIP models that can be used for RA; and development and implementation of RM tools. Use of RM tools can play a major role in this process, as it can raise the efficiency of RM activities, and decrease reliance on any individual RA specialist´s knowledge. The contribution of such tools is even greater, when dealing with critical infrastructures; as it is very difficult for a single specialist to cope with the diversity and complexity of CIP risk assessment.
Keywords :
information technology; risk analysis; security of data; IT security; advanced risk analysis; critical infrastructure protection; information security; risk management; Best practices; Force measurement; Guidelines; Information security; Investments; Lenses; Protection; Risk analysis; Risk management; Roads;
Conference_Titel :
Critical Infrastructure Protection, First IEEE International Workshop on
Print_ISBN :
0-7695-2426-5
DOI :
10.1109/IWCIP.2005.18