ITU-T X.1208 PDF

ITU-T X.1208 PDF

Name:
ITU-T X.1208 PDF

Published Date:
01/01/2014

Status:
[ Active ]

Description:

A cybersecurity indicator of risk to enhance confidence and security in the use of telecommunication/information and communication technologies

Publisher:
International Telecommunication Union-T

Document status:
Active

Format:
Electronic (PDF)

Delivery time:
10 minutes

Delivery time (for Russian version):
200 business days

SKU:

Choose Document Language:
$12.3
Need Help?

This Recommendation provides a guideline to assist organizations in the development, selection and identification of the data to be captured (based on selected indicators) and shows how this information can be used to compute a cybersecurity indicator of risk (CSIR). Note that an organization may generate a cybersecurity indicator of risk with respect to a specific set of cybersecurity indicators (CSI) while departments within an organization may also generate a cybersecurity indicator of risk with respect to their specific set of cybersecurity indicators (CSI). The purpose of the cybersecurity indicator is to allow for the evaluation of the level of cybersecurity competency at a particular point in time of an organization and, when this process is repeated at other points in time, it allows the status of an organization's cybersecurity programme's progress over time to be determined.

This Recommendation also provides a list of potential indicators and describes a methodology to be used when these cybersecurity indicators are used to compute a cybersecurity indicator of risk.

This Recommendation is intended to help organizations that implement or operate a portion of the global infrastructure of information and communication technologies to evaluate their own cybersecurity capabilities and calculate their cybersecurity indicator of risk. These guidelines are intended to facilitate the decision-making process within organizations on how to improve cybersecurity and how to lower their cybersecurity risks. Furthermore, these guidelines provide an indication of where organizations could/should invest resources to improve their cybersecurity.

This Recommendation is not to be used to generate a cybersecurity indicator of risk on a country-level basis. Furthermore, this Recommendation does not propose the use of an index or a single indicator to express the cybersecurity capabilities of an organization

NOTE 1 - Comparisons of the calculated cybersecurity indicator of risk between organizations should not be made. This is because each organization or community is supposed to select what they deem to be an appropriate set of cybersecurity indicators for their organization. Furthermore, they are expected to develop their own measurement methodology and criteria to address their risks and concerns. In some cases subjective information, as opposed to objective data, may be used. Consequently, it is recommended that a cybersecurity indicator of risk for one organization should never be compared to that of another organization, as it is highly context dependent.

NOTE 2 - The indicators described in this Recommendation may not be compatible with those developed by other industry sectors due to the different purposes of those industries.


Edition : 14
File Size : 1 file
Number of Pages : 42
Published : 01/01/2014

History


Related products

ITU-T G.832 SPANISH
Published Date: 10/01/1998
Transporte de elementos de la jerarquía digital síncrona por redes de la jerarquía digital plesiócrona – Estructuras de trama y de multiplexión
$9.9
ITU-T N.11 SPANISH
Published Date: 11/01/1988
OBJETIVOS ESENCIALES DE CALIDAD DE TRANSMISIÓN PARA CENTROS RADIOFÓNICOS INTERNACIONALES (CRI)
$6
ITU-T Q.761 FRENCH
Published Date: 12/01/1999
Système de signalisation n° 7 – Description fonctionnelle du sous-système utilisateur du RNIS
$24.9

Best-Selling Products