Pretražite po imenu i prezimenu autora, mentora, urednika, prevoditelja

Napredna pretraga

Pregled bibliografske jedinice broj: 594207

Risk Assessment of the Bank's Noncompliance with Payment Card Industry Data Security Standard


Maček, Davor; Magdalenić, Ivan; Ivković, Nikola
Risk Assessment of the Bank's Noncompliance with Payment Card Industry Data Security Standard // Central European Conference on Information and Intelligent Systems, CECIIS, 23rd International Conference 2012 / Hunjak, Tihomir ; Lovrenčić, Sandra ; Tomičić, Igor (ur.).
Varaždin: Fakultet organizacije i informatike Sveučilišta u Zagrebu, 2012. str. 305-311 (predavanje, međunarodna recenzija, cjeloviti rad (in extenso), znanstveni)


CROSBI ID: 594207 Za ispravke kontaktirajte CROSBI podršku putem web obrasca

Naslov
Risk Assessment of the Bank's Noncompliance with Payment Card Industry Data Security Standard

Autori
Maček, Davor ; Magdalenić, Ivan ; Ivković, Nikola

Vrsta, podvrsta i kategorija rada
Radovi u zbornicima skupova, cjeloviti rad (in extenso), znanstveni

Izvornik
Central European Conference on Information and Intelligent Systems, CECIIS, 23rd International Conference 2012 / Hunjak, Tihomir ; Lovrenčić, Sandra ; Tomičić, Igor - Varaždin : Fakultet organizacije i informatike Sveučilišta u Zagrebu, 2012, 305-311

Skup
Central European Conference on Information and Intelligent Systems

Mjesto i datum
Varaždin, Hrvatska, 19.09.2012. - 21.09.2012

Vrsta sudjelovanja
Predavanje

Vrsta recenzije
Međunarodna recenzija

Ključne riječi
Risk assessment; information security; PCI DSS; compliance; AHP; OCTAVE; financial institution; bank

Sažetak
This paper describes methodology of finding potential risks of bank's noncompliance with Payment Card Industry Data Security Standard (PCI DSS) v2.0 mandatory security requirements. For different types of information assets or security requirements it is necessary to apply different methods of security risk assessment or different standards for specific environment. In this paper, PCI DSS security requirements are explained, Analytic Hierarchy Process (AHP) technique is used as a groundwork to decide which PCI requirements are the most critical and the OCTAVE method is used for formal risk assessment of the most significant PCI requirement in case the requirement is not satisfied. Both, AHP technique and OCTAVE method are applied to a real case scenario in the bank before conducting PCI auditing process.

Izvorni jezik
Engleski

Znanstvena područja
Elektrotehnika, Računarstvo, Informacijske i komunikacijske znanosti



POVEZANOST RADA


Projekti:
016-0161199-1715 - Informacijska infrastruktura i interoperabilnost (Vrček, Neven, MZOS ) ( CroRIS)
016-0361935-1728 - Semantičko modeliranje višeagentnih sustava (Maleković, Mirko, MZOS ) ( CroRIS)
036-0362027-1638 - Umrežena ekonomija (Skočir, Zoran, MZO ) ( CroRIS)

Ustanove:
Fakultet organizacije i informatike, Varaždin,
Fakultet elektrotehnike i računarstva, Zagreb

Profili:

Avatar Url Davor Maček (autor)

Avatar Url Nikola Ivković (autor)

Avatar Url Ivan Magdalenić (autor)


Citiraj ovu publikaciju:

Maček, Davor; Magdalenić, Ivan; Ivković, Nikola
Risk Assessment of the Bank's Noncompliance with Payment Card Industry Data Security Standard // Central European Conference on Information and Intelligent Systems, CECIIS, 23rd International Conference 2012 / Hunjak, Tihomir ; Lovrenčić, Sandra ; Tomičić, Igor (ur.).
Varaždin: Fakultet organizacije i informatike Sveučilišta u Zagrebu, 2012. str. 305-311 (predavanje, međunarodna recenzija, cjeloviti rad (in extenso), znanstveni)
Maček, D., Magdalenić, I. & Ivković, N. (2012) Risk Assessment of the Bank's Noncompliance with Payment Card Industry Data Security Standard. U: Hunjak, T., Lovrenčić, S. & Tomičić, I. (ur.)Central European Conference on Information and Intelligent Systems, CECIIS, 23rd International Conference 2012.
@article{article, author = {Ma\v{c}ek, Davor and Magdaleni\'{c}, Ivan and Ivkovi\'{c}, Nikola}, year = {2012}, pages = {305-311}, keywords = {Risk assessment, information security, PCI DSS, compliance, AHP, OCTAVE, financial institution, bank}, title = {Risk Assessment of the Bank's Noncompliance with Payment Card Industry Data Security Standard}, keyword = {Risk assessment, information security, PCI DSS, compliance, AHP, OCTAVE, financial institution, bank}, publisher = {Fakultet organizacije i informatike Sveu\v{c}ili\v{s}ta u Zagrebu}, publisherplace = {Vara\v{z}din, Hrvatska} }
@article{article, author = {Ma\v{c}ek, Davor and Magdaleni\'{c}, Ivan and Ivkovi\'{c}, Nikola}, year = {2012}, pages = {305-311}, keywords = {Risk assessment, information security, PCI DSS, compliance, AHP, OCTAVE, financial institution, bank}, title = {Risk Assessment of the Bank's Noncompliance with Payment Card Industry Data Security Standard}, keyword = {Risk assessment, information security, PCI DSS, compliance, AHP, OCTAVE, financial institution, bank}, publisher = {Fakultet organizacije i informatike Sveu\v{c}ili\v{s}ta u Zagrebu}, publisherplace = {Vara\v{z}din, Hrvatska} }




Contrast
Increase Font
Decrease Font
Dyslexic Font