Math approach of implementing ISO 27001

The objective of this paper work is to create a mathematical approach that can quantify the need of implementing the ISO 27001 in a company and the actual benefits of doing so. The scope is to identify the factors that determine vulnerabilities, what damages are caused by these factors, the risk and...

Full description

Bibliographic Details
Main Authors: Stoica Liviu Adrian, Candoi-Savu Robert Adrian
Format: Article
Language:English
Published: Sciendo 2020-07-01
Series:Proceedings of the International Conference on Business Excellence
Subjects:
Online Access:https://doi.org/10.2478/picbe-2020-0049
Description
Summary:The objective of this paper work is to create a mathematical approach that can quantify the need of implementing the ISO 27001 in a company and the actual benefits of doing so. The scope is to identify the factors that determine vulnerabilities, what damages are caused by these factors, the risk and impact level of the factors. The approach is from the point of view of costs caused by implementing the standard compared with costs of potential damage by not implementing.
ISSN:2558-9652