Method of assesing damage in case of leakage of official information
DOI:
https://doi.org/10.18372/2225-5036.31.21166Keywords:
protection of restricted information, official information, damage assessment, information leak, negative consequences, lossesAbstract
Based on the previously developed basic tuple model of a set of parameters for assessing the consequences of a leak of official information of a critical infrastructure facility, a method for assessing damage in the event of its leak has been developed, which allows estimating the amount of predicted significant damage by determining the parameters of economic losses (as damage from the publication of this information, which is subject to examination for classification as official information) and damage from the possible occurrence of other serious ones. This method has the ability to calculate the amount of this predicted significant damage depending on the type of violation committed in the event of disclosure of official information and/or in the event of loss of its material media. The method provides conditions for determining the possible obsolescence of information, its importance among other available official information and material media, the amount of funding for measures to protect them and its effectiveness. The developed method meets the requirements of existing legislation in terms of the application of norms to restrict access to public information. The method has been tested and the results obtained for a real subject of authority (object of critical infrastructure) are presented based on its current list of official information and certain assumptions. Its use will be useful when implementing a comprehensive information protection system at the stage of developing an information security policy when assessing risks (including losses) of loss of information assets for their timely minimization and elimination, as a way to prevent, identify, prevent and neutralize threats to the security of a critical infrastructure object (and/or subject of authority) and maintain the security of its critical information infrastructure objects at a level that ensures the continuity of operation and stability of the provision of basic services and/or vital functions.
Downloads
Published
How to Cite
Issue
Section
License

This work is licensed under a Creative Commons Attribution 4.0 International License.
The scientific journal "Ukrainian Scientific Journal of Information Security" adheres to the principles of open science and provides free, free and permanent access to all published materials. The goal of the policy is to increase the visibility, citation and impact of the results of scientific research in the field of information security. The journal works according to the principles of Open Access and does not charge a fee for access to published articles.
All articles are published in Open Access under the Creative Commons Attribution 4.0 International (CC BY 4.0) license.
Copyright
Authors who publish their works in the journal “Ukrainian Scientific Journal of Information Security”:
-
retain the copyright to their publications;
-
grant the journal the right of first publication of the article;
-
agree to the distribution of their materials under the CC BY 4.0 license;
-
have the right to reuse, archive, and distribute their works (including in institutional and subject repositories), provided that proper reference is made to the original publication in the journal.




