Methodology for assessing the effectiveness of measures aimed at ensuring information security of the object of informatization
Lakhno V. Akhmetov B. Mazaraki A. Kryvoruchko O. Chubaievskyi V. Desiatko A.
31 July 2021Little Lion Scientific
Journal of Theoretical and Applied Information Technology
2021#99Issue 143417 - 3427 pp.
The article analyzes publications on the evaluation of investments in information security (IS) of objects of informatization (OBI). The possibility and necessity of obtaining the necessary data have been substantiated, contributing to a reliable assessment of the effectiveness of measures aimed at increasing the company’s IS. In the study process, the modelling methods have been used. A methodology is proposed for calculating indicators from investment activities in the context of increasing IS metrics of OBI. A specific example of such simulation is described. The proposed methodology provides an assessment of the damage prevention from a cyber-attack. The amount of the damage prevention from a cyber-attack is taken as a basic indicator for calculating the economic effect of investing in information security tools (IST). The performed simulation modelling allowed taking into account the relative uncertainty of the real situation with IS of OBI. The conducted study will help practitioners in the field of IS to obtain informed decisions to increase the efficiency of investment projects in the field of IS for OBI, using the approach outlined in the study. Unlike the existing ones, the proposed methodology takes into account both direct and indirect factors of investment projects in the field of IS of OBI. The obtained research results make it possible to expand the tools of information security analysts in the synthesis and analysis of information security contours of objects of informatization of any scale.
Damage Prevention , Information Protection , Information Security , Investment Process , Methodology , Uncertainty
Text of the article Перейти на текст статьи
National University of Life and Environmental Sciences of Ukraine, Department of Computer Systems and Networks, Kyiv, Ukraine
Caspian University of Technology and Engineering named after Sh. Yessenov, Aktau, Kazakhstan
Kyiv National University of Trade and Economics, Department of Software Engineering and Cybersecurity, Kyiv, Ukraine
National University of Life and Environmental Sciences of Ukraine
Caspian University of Technology and Engineering named after Sh. Yessenov
Kyiv National University of Trade and Economics
10 лет помогаем публиковать статьи Международный издатель
Книга Публикация научной статьи Волощук 2026 Book Publication of a scientific article 2026