Erinevus lehekülje "ITB8811 Foundations of Information Security Risk Analysis" redaktsioonide vahel
		
		
		
		
		
		Mine navigeerimisribale
		Mine otsikasti
		
				
		
		
	
| 42. rida: | 42. rida: | ||
| # [http://people.rennes.inria.fr/Barbara.Kordy/papers/survey.pdf Attack Tree Survey] | # [http://people.rennes.inria.fr/Barbara.Kordy/papers/survey.pdf Attack Tree Survey] | ||
| # [https://arxiv.org/pdf/1210.8092.pdf Quantitative Questions on Attack-Defense Trees] | # [https://arxiv.org/pdf/1210.8092.pdf Quantitative Questions on Attack-Defense Trees] | ||
| − | # [https://research.cyber.ee/~peeter/research/attacks11.pdf  | + | # [https://research.cyber.ee/~peeter/research/attacks11.pdf Rational Choice Of Security Measures via Multi-Parameter Attack Trees] | 
| − | # [https://digi.lib.ttu.ee/i/?496  | + | # [https://digi.lib.ttu.ee/i/?496 Efficient Semantics of Parallel and Serial Models of Attack Trees] | 
| == Assignments == | == Assignments == | ||
| # Think of an enterprise, a process, a system, or a product and perform qualitative risk analysis using the FAIR framework by filling in the following [[Media:ITB8811-2019-FAIR_Template.zip|FAIR Template]] | # Think of an enterprise, a process, a system, or a product and perform qualitative risk analysis using the FAIR framework by filling in the following [[Media:ITB8811-2019-FAIR_Template.zip|FAIR Template]] | ||
| # Perform cost analysis of human originated threats in your case studies. Use the tool [https://satoss.uni.lu/members/piotr/adtool/ ADTool] for modeling, export attack trees in XML format and submit. | # Perform cost analysis of human originated threats in your case studies. Use the tool [https://satoss.uni.lu/members/piotr/adtool/ ADTool] for modeling, export attack trees in XML format and submit. | ||
Redaktsioon: 19. november 2019, kell 08:03
Course information
Code: ITB8811 Foundations of Information Security Risk Analysis
ECTS: 6
Assessment form: examination
Instructor: Aleksandr Lenin, email: aleksandr dot lenin at taltech dot ee
Schedule
Tue 10:00 - 11:30 SCI-028 Lecture
Tue 11:45 - 12:15 SCI-028 Practice
Announcements
- Examination dates:
- Dec 17th 2019 10AM SCI-028
- TBA (January 2020)
- TBA (January 2020)
- Consultation times:
- Dec 10th 2019 10AM SCI-028
- TBA (January 2020)
- TBA (January 2020)
Lectures
- Introduction
- Security Risk
- Financial Risk
- Qualitative Risk Assessment
- Factor Analysis of Information Risk (FAIR)
- Risk Management
- Reliability and Availability and some tasks to practice
- Foundations of Attack Trees
- Attack Tree Survey
- Quantitative Questions on Attack-Defense Trees
- Rational Choice Of Security Measures via Multi-Parameter Attack Trees
- Efficient Semantics of Parallel and Serial Models of Attack Trees
Assignments
- Think of an enterprise, a process, a system, or a product and perform qualitative risk analysis using the FAIR framework by filling in the following FAIR Template
- Perform cost analysis of human originated threats in your case studies. Use the tool ADTool for modeling, export attack trees in XML format and submit.