An Integrated Approach in Risk Management Process for Identifying Information Security Threats using Medical Research Design

In this paper, we attempt to introduce a new method for performing risk analysis studies by effectively adopting and adapting medical research design namely a prospective cohort study based survival analysis approach into risk management process framework. Under survival analysis approach, a method...

Full description

Bibliographic Details
Main Author: Ahmad, Rabiah
Format: Article
Language:English
Published: Dynamic Publishers Inc., USA 2012
Subjects:
Online Access:http://eprints.utem.edu.my/id/eprint/3291/
http://eprints.utem.edu.my/id/eprint/3291/1/JIASPaper_181.PDF
_version_ 1848886952630157312
author Ahmad, Rabiah
author_facet Ahmad, Rabiah
author_sort Ahmad, Rabiah
building UTeM Institutional Repository
collection Online Access
description In this paper, we attempt to introduce a new method for performing risk analysis studies by effectively adopting and adapting medical research design namely a prospective cohort study based survival analysis approach into risk management process framework. Under survival analysis approach, a method which is known as Cox Proportional Hazards (PH) Model will be applied in order to identify potential information security threats. The risk management process in this research will be based on Australian/New Zealand Standard for Risk Management (AS/NZS ISO 31000:2009). AS/NZS ISO 31000:2009 provides a sequencing of the core part of the risk management process namely establishing the context, risk identification, risk analysis, risk evaluation and risk treatment. Moreover, it seems that the integration of risk management process with medical approach indeed brings very useful new insights. Thus, the contribution of the paper will be introducing a new method for performing a risk analysis studies in information security domain.
first_indexed 2025-11-15T19:46:40Z
format Article
id utem-3291
institution Universiti Teknikal Malaysia Melaka
institution_category Local University
language English
last_indexed 2025-11-15T19:46:40Z
publishDate 2012
publisher Dynamic Publishers Inc., USA
recordtype eprints
repository_type Digital Repository
spelling utem-32912021-09-30T15:39:19Z http://eprints.utem.edu.my/id/eprint/3291/ An Integrated Approach in Risk Management Process for Identifying Information Security Threats using Medical Research Design Ahmad, Rabiah ZA4050 Electronic information resources In this paper, we attempt to introduce a new method for performing risk analysis studies by effectively adopting and adapting medical research design namely a prospective cohort study based survival analysis approach into risk management process framework. Under survival analysis approach, a method which is known as Cox Proportional Hazards (PH) Model will be applied in order to identify potential information security threats. The risk management process in this research will be based on Australian/New Zealand Standard for Risk Management (AS/NZS ISO 31000:2009). AS/NZS ISO 31000:2009 provides a sequencing of the core part of the risk management process namely establishing the context, risk identification, risk analysis, risk evaluation and risk treatment. Moreover, it seems that the integration of risk management process with medical approach indeed brings very useful new insights. Thus, the contribution of the paper will be introducing a new method for performing a risk analysis studies in information security domain. Dynamic Publishers Inc., USA 2012 Article PeerReviewed text en http://eprints.utem.edu.my/id/eprint/3291/1/JIASPaper_181.PDF Ahmad, Rabiah (2012) An Integrated Approach in Risk Management Process for Identifying Information Security Threats using Medical Research Design. Journal of Information Assurance and Security. ISSN 1554-1010 http://www.mirlabs.org/jias/
spellingShingle ZA4050 Electronic information resources
Ahmad, Rabiah
An Integrated Approach in Risk Management Process for Identifying Information Security Threats using Medical Research Design
title An Integrated Approach in Risk Management Process for Identifying Information Security Threats using Medical Research Design
title_full An Integrated Approach in Risk Management Process for Identifying Information Security Threats using Medical Research Design
title_fullStr An Integrated Approach in Risk Management Process for Identifying Information Security Threats using Medical Research Design
title_full_unstemmed An Integrated Approach in Risk Management Process for Identifying Information Security Threats using Medical Research Design
title_short An Integrated Approach in Risk Management Process for Identifying Information Security Threats using Medical Research Design
title_sort integrated approach in risk management process for identifying information security threats using medical research design
topic ZA4050 Electronic information resources
url http://eprints.utem.edu.my/id/eprint/3291/
http://eprints.utem.edu.my/id/eprint/3291/
http://eprints.utem.edu.my/id/eprint/3291/1/JIASPaper_181.PDF