Maximizing Security Management Performance and Decisions with the MFC Cyber Security Model: e- learning case study

The Mean failure Cost (MFC) is a cascade of linear models that quantify security threats by taking into consideration the system's stakeholders, security requirements, architectural components and threats. This quantitative cyber security model monetizes system's security in terms of cost...

Full description

Saved in:
Bibliographic Details
Main Authors: N. Rjaibi (Author), L. B. A. Rabai (Author)
Format: Book
Published: European Alliance for Innovation (EAI), 2017-11-01T00:00:00Z.
Subjects:
Online Access:Connect to this object online.
Tags: Add Tag
No Tags, Be the first to tag this record!

MARC

LEADER 00000 am a22000003u 4500
001 doaj_2311bbf9d2b14d9ab682e1b4972eb962
042 |a dc 
100 1 0 |a N. Rjaibi  |e author 
700 1 0 |a L. B. A. Rabai  |e author 
245 0 0 |a Maximizing Security Management Performance and Decisions with the MFC Cyber Security Model: e- learning case study 
260 |b European Alliance for Innovation (EAI),   |c 2017-11-01T00:00:00Z. 
500 |a 10.4108/eai.29-11-2017.153389 
500 |a 2032-9253 
520 |a The Mean failure Cost (MFC) is a cascade of linear models that quantify security threats by taking into consideration the system's stakeholders, security requirements, architectural components and threats. This quantitative cyber security model monetizes system's security in terms of cost which may be lost due to security failure. The lack of quantitative security models in security decision making is a way to discover strengths and uniqueness of the MFC cyber security model. This paper intends to extend this measure into a security risk management model for ultra large systems and to exploit the previously presented MFC model's characteristics in security decision making relying on a rigorous and quantifiable analysis of financial returns. In fact, we intend to provide a possible solution to security problems using the MFC model in order to set the highest security priorities and choose the suitable countermeasures as well as computing the profitability of the proposed security countermeasures through the Return on Investment (ROI) based on the MFC's values for each stakeholder. This will lead to monitoring the effectiveness of the proposed security countermeasures, ensuring the best solution choice by saving both time and money and providing a security decision maker with adequate justification to perform his security choice. The practical investigation is to be conducted thought the context of e-learning platforms. 
546 |a EN 
690 |a Management 
690 |a Measurement 
690 |a Security 
690 |a Economics 
690 |a Security Countermeasures 
690 |a The Return On Investment 
690 |a Decision Making 
690 |a e-Business Management 
690 |a Education 
690 |a L 
690 |a Technology 
690 |a T 
655 7 |a article  |2 local 
786 0 |n EAI Endorsed Transactions on e-Learning, Vol 4, Iss 15, Pp 1-12 (2017) 
787 0 |n http://eudl.eu/doi/10.4108/eai.29-11-2017.153389 
787 0 |n https://doaj.org/toc/2032-9253 
856 4 1 |u https://doaj.org/article/2311bbf9d2b14d9ab682e1b4972eb962  |z Connect to this object online.