科技报告详细信息
Using assurance models to aid the risk and governance lifecycle
Baldwin, Adrian ; Beres, Yolanta ; Shiu, Simon
HP Development Company
关键词: trust;    assurance;    risk;    compliance;    governance;    security;   
RP-ID  :  HPL-2007-48
学科分类:计算机科学(综合)
美国|英语
来源: HP Labs
PDF
【 摘 要 】

In this paper we describe an enterprise assurance model allowing many layers of the enterprise architecture from the business processes; supporting applications and the IT infrastructure and operational processes to be represented and related from a control and risk perspective. This provides a consistent way of capturing and relating the risk views for the various stakeholders within the organisation. At the low-level we use assurance models to provide automated testing of controls and policies and at the higher level these results are related across the enterprise architecture. This enables a repository for manual and automated test results that can be used to derive different (but consistent) views for the various stakeholders. Publication Info: BT Technology Journal, Vol 25, no.1, Jan. 07 18 Pages

【 预 览 】
附件列表
Files Size Format View
RO201804100002028LZ 350KB PDF download
  文献评价指标  
  下载次数:40次 浏览次数:38次