Current state of IT risk analysis in management frameworks: Is it enough?
Sprache des Vortragstitels:
Original Tagungtitel:
60th International Scientific Conference of RTU
Sprache des Tagungstitel:
Original Kurzfassung:
Approaches to IT risk assessment from modern
IT management frameworks are studied in the paper. We test
whether they meet systematicity principles. Their concepts of risk
and methods of risk analysis are discussed. Applicability of the
methods for rational decision making in practical applications
were considered.
System analysis method was used to analyze IT risk assessment
approaches in popular frameworks. Details of risk methodology
of each framework were studied and their methods summarized.
The analysis revealed that examined frameworks have inefficient
risk assessment approaches in both physical meaning and for
decision making purposes. Suggestions on how to mend the
problems were given.