publication . Article . 2015

Selecting optimal subset of security controls

Yevseyeva, I.; Basto-Fernandes, V.; Michael, Emmerich, T. M.; Moorsel, van, A.;
Open Access English
  • Published: 15 Sep 2015 Journal: volume 64, pages 1,035-1,042issn: 1877-0509, Copyright policy
  • Publisher: Elsevier
Open Access journal Choosing an optimal investment in information security is an issue most companies face these days. Which security controls to buy to protect the IT system of a company in the best way? Selecting a subset of security controls among many available ones can be seen as a resource allocation problem that should take into account conflicting objectives and constraints of the problem. In particular, the security of the system should be improved without hindering productivity, under a limited budget for buying controls. In this work, we provide several possible formulations of security controls subset selection problem as a portfolio optimization,...
free text keywords: subset selection, security, multicriteria optimisation, portfolio optimization
