IJCATR Volume 6 Issue 6

Efficacy of OCTAVE Risk Assessment Methodology in Information Systems Organizations

Muhammad Asif Khan
10.7753/IJCATR0606.1001
keywords : risk; OCTAVE; information systems; security; risk assessment; methodology

PDF
With the increasing use of computers in business information security has also become a key issue in organizations. Risk assessment in organizations is vital in order to identify threats and take appropriate measures. There are various risk assessment methodologies exist which organizations use for risk assessment depending the type and need of organizations. In this research OCTAVE methodology has been used following a comparative study of various methodologies due to its flexibility and simplicity. The methodology was implemented in a financial institution and results of its efficacy have been discussed.
@artical{m662017ijcatr06061001,
Title = "Efficacy of OCTAVE Risk Assessment Methodology in Information Systems Organizations",
Journal ="International Journal of Computer Applications Technology and Research(IJCATR)",
Volume = "6",
Issue ="6",
Pages ="242 - 244",
Year = "2017",
Authors ="Muhammad Asif Khan"}
  • The paper provides an overview of different risk assessment methodologies
  • A significance of risk assessment has been presented in the paper
  • A simple methodology OCTAVE has been selected and its phases discussed in the paper
  • Efficacy of the OCTAVE is determined and recommendations suggested to protect assets in a financial institution.