Risk management of medical IT networks: an ISO/IEC 15504 compliant approach to assessment against IEC 80001-1.
Silvana Togneri MacMahonFergal McCafferyFrank KeenanPublished in: ICSSP (2013)
Keyphrases
- risk management
- iso iec
- risk assessment
- international standard
- information security management
- capability maturity model
- information security
- decision support system
- risk evaluation
- maturity model
- commercial banks
- quality evaluation
- software projects
- software process
- risk factors
- operational risk
- software quality
- reference model
- open source
- database
- management system
- case study
- decision making