Enterprise Architecture-Based Risk and Security Modelling and Analysis
Title | Enterprise Architecture-Based Risk and Security Modelling and Analysis |
Publication Type | Conference Paper |
Year of Publication | 2016 |
Authors | Jonkers H., Quartel D.AC |
Editor | Kordy B., Ekstedt M., D. Kim S |
Conference Name | Third International Workshop, GraMSec 2016, Lisbon, Portugal |
Date Published | September |
Publisher | Springer Verlag |
Conference Location | London |
Keywords | Archimate, Enterprise architecture, Risk analysis, Risk and security modelling |
Abstract | The growing complexity of organizations and the increasing number of sophisticated cyber attacks asks for a systematic and integral approach to Enterprise Risk and Security Management (ERSM). As enterprise architecture offers the necessary integral perspective, including the business and IT aspects as well as the business motivation, it seems natural to integrate risk and security aspects in the enterprise architecture. In this paper we show how the ArchiMate standard for enterprise architecture modelling can be used to support risk and security modelling and analysis throughout the ERSM cycle, covering both risk assessment and security deployment. |
DOI | 10.1007/978-3-319-46263-9_6 |