A Socio-Technical Approach to Cyber Risk Management and Impact Assessment

HTML  XML Download Download as PDF (Size: 583KB)  PP. 33-41  
DOI: 10.4236/jis.2013.41005    4,711 Downloads   8,917 Views  Citations

ABSTRACT

Technology is increasingly being used by organisations to mediate social/business relationships and social/business transactions. While traditional models of impact assessment have focused on the loss of confidentiality, integrity and availability, we propose a new model based upon socio-technical systems thinking that places the people and the technology within an organisations business/functional context. Thus in performing risk management in a cyber security and safety context, a detailed picture of the impact that a security/safety incident can have on an organisation is developed. This in turn stimulates a more holistic view of the effectiveness, and appropriateness, of a counter measure.

Share and Cite:

K. Charitoudi and A. Blyth, "A Socio-Technical Approach to Cyber Risk Management and Impact Assessment," Journal of Information Security, Vol. 4 No. 1, 2013, pp. 33-41. doi: 10.4236/jis.2013.41005.

Copyright © 2024 by authors and Scientific Research Publishing Inc.

Creative Commons License

This work and the related PDF file are licensed under a Creative Commons Attribution 4.0 International License.