Authors:
Antonio Santos-Olmo
1
;
Luis Enrique Sánchez
1
;
Eduardo Fernández-Medina
2
and
Mario Piattini
2
Affiliations:
1
SICAMAN Nuevas Tecnologías, Spain
;
2
Universidad de Castilla-La Mancha, Spain
Keyword(s):
Risk Analysis, ISMS, Associative algorithms, Enterprise social networks, Hierarquical Risks, Associative Risks, Cloud Computing
Abstract:
As a result of the growing dependence of information society on ICTs, the need to know the risks that can affect information is enormously increasing with the purpose of protecting it. This article shows advances in the identification and management of risks in ICTs, particularly in the case of SMEs, along with the first proposal of a methodology for management and analysis of the associative risk in SMEs taking into account not only internal risks derived from SMEs but also other external risks derived from other enterprises in the same sector or collaborating with them. Thus, we will obtain a high quality risk analysis at low cost using advanced concepts such as “associative algorithms” and “enterprise social networks”. In the era of globalization, SMEs no longer work as independent companies but share more and more services, even facilities, with other companies. Therefore, we cannot obtain an adequate risk analysis without considering the risks associated with these collaboration
s. In this article we present rhe results of a systematic review of methodologies and models for the analysis and management of associative and hierarchical risk in SMEs.
(More)