{"id":"https://openalex.org/W2156294488","doi":"https://doi.org/10.1109/hicss.2003.1174904","title":"Information assurance measures and metrics - state of practice and proposed taxonomy","display_name":"Information assurance measures and metrics - state of practice and proposed taxonomy","publication_year":2003,"publication_date":"2003-01-01","ids":{"openalex":"https://openalex.org/W2156294488","doi":"https://doi.org/10.1109/hicss.2003.1174904","mag":"2156294488"},"language":"en","primary_location":{"id":"doi:10.1109/hicss.2003.1174904","is_oa":false,"landing_page_url":"https://doi.org/10.1109/hicss.2003.1174904","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"36th Annual Hawaii International Conference on System Sciences, 2003. Proceedings of the","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5087064145","display_name":"Rayford B. Vaughn","orcid":null},"institutions":[{"id":"https://openalex.org/I99041443","display_name":"Mississippi State University","ror":"https://ror.org/0432jq872","country_code":"US","type":"education","lineage":["https://openalex.org/I4210141039","https://openalex.org/I99041443"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"R.B. Vaughn","raw_affiliation_strings":["Department of Computer Science, Mississippi State University, MS, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Mississippi State University, MS, USA","institution_ids":["https://openalex.org/I99041443"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5039964415","display_name":"R.R. Henning","orcid":"https://orcid.org/0009-0002-4382-8548"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"R. Henning","raw_affiliation_strings":["Government Communications Systems Division, Harris Corporation, Melbourne, FL, USA"],"affiliations":[{"raw_affiliation_string":"Government Communications Systems Division, Harris Corporation, Melbourne, FL, USA","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5110955589","display_name":"A. Siraj","orcid":null},"institutions":[{"id":"https://openalex.org/I99041443","display_name":"Mississippi State University","ror":"https://ror.org/0432jq872","country_code":"US","type":"education","lineage":["https://openalex.org/I4210141039","https://openalex.org/I99041443"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"A. Siraj","raw_affiliation_strings":["Department of Computer Science, Mississippi State University, MS, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Mississippi State University, MS, USA","institution_ids":["https://openalex.org/I99041443"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5087064145"],"corresponding_institution_ids":["https://openalex.org/I99041443"],"apc_list":null,"apc_paid":null,"fwci":11.1851,"has_fulltext":false,"cited_by_count":133,"citation_normalized_percentile":{"value":0.97974442,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"10 pp.","last_page":"10 pp."},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9965999722480774,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9965999722480774,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9847000241279602,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11614","display_name":"Cloud Data Security Solutions","score":0.9828000068664551,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/information-assurance","display_name":"Information assurance","score":0.7167800068855286},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6727204918861389},{"id":"https://openalex.org/keywords/categorization","display_name":"Categorization","score":0.6298401951789856},{"id":"https://openalex.org/keywords/software-security-assurance","display_name":"Software security assurance","score":0.5528421998023987},{"id":"https://openalex.org/keywords/set","display_name":"Set (abstract data type)","score":0.5303873419761658},{"id":"https://openalex.org/keywords/metric","display_name":"Metric (unit)","score":0.45736297965049744},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.4550027847290039},{"id":"https://openalex.org/keywords/information-system","display_name":"Information system","score":0.44443124532699585},{"id":"https://openalex.org/keywords/information-security","display_name":"Information security","score":0.4348657727241516},{"id":"https://openalex.org/keywords/taxonomy","display_name":"Taxonomy (biology)","score":0.43019014596939087},{"id":"https://openalex.org/keywords/software-engineering","display_name":"Software engineering","score":0.42725902795791626},{"id":"https://openalex.org/keywords/risk-analysis","display_name":"Risk analysis (engineering)","score":0.3837585747241974},{"id":"https://openalex.org/keywords/engineering-management","display_name":"Engineering management","score":0.3425597548484802},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3169489800930023},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.2109629213809967},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.110197514295578},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.10002556443214417}],"concepts":[{"id":"https://openalex.org/C2780795517","wikidata":"https://www.wikidata.org/wiki/Q6030997","display_name":"Information assurance","level":3,"score":0.7167800068855286},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6727204918861389},{"id":"https://openalex.org/C94124525","wikidata":"https://www.wikidata.org/wiki/Q912550","display_name":"Categorization","level":2,"score":0.6298401951789856},{"id":"https://openalex.org/C62913178","wikidata":"https://www.wikidata.org/wiki/Q7554361","display_name":"Software security assurance","level":4,"score":0.5528421998023987},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.5303873419761658},{"id":"https://openalex.org/C176217482","wikidata":"https://www.wikidata.org/wiki/Q860554","display_name":"Metric (unit)","level":2,"score":0.45736297965049744},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.4550027847290039},{"id":"https://openalex.org/C180198813","wikidata":"https://www.wikidata.org/wiki/Q121182","display_name":"Information system","level":2,"score":0.44443124532699585},{"id":"https://openalex.org/C527648132","wikidata":"https://www.wikidata.org/wiki/Q189900","display_name":"Information security","level":2,"score":0.4348657727241516},{"id":"https://openalex.org/C58642233","wikidata":"https://www.wikidata.org/wiki/Q8269924","display_name":"Taxonomy (biology)","level":2,"score":0.43019014596939087},{"id":"https://openalex.org/C115903868","wikidata":"https://www.wikidata.org/wiki/Q80993","display_name":"Software engineering","level":1,"score":0.42725902795791626},{"id":"https://openalex.org/C112930515","wikidata":"https://www.wikidata.org/wiki/Q4389547","display_name":"Risk analysis (engineering)","level":1,"score":0.3837585747241974},{"id":"https://openalex.org/C110354214","wikidata":"https://www.wikidata.org/wiki/Q6314146","display_name":"Engineering management","level":1,"score":0.3425597548484802},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3169489800930023},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.2109629213809967},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.110197514295578},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.10002556443214417},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C59822182","wikidata":"https://www.wikidata.org/wiki/Q441","display_name":"Botany","level":1,"score":0.0},{"id":"https://openalex.org/C29983905","wikidata":"https://www.wikidata.org/wiki/Q7445066","display_name":"Security service","level":3,"score":0.0},{"id":"https://openalex.org/C21547014","wikidata":"https://www.wikidata.org/wiki/Q1423657","display_name":"Operations management","level":1,"score":0.0},{"id":"https://openalex.org/C119599485","wikidata":"https://www.wikidata.org/wiki/Q43035","display_name":"Electrical engineering","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1109/hicss.2003.1174904","is_oa":false,"landing_page_url":"https://doi.org/10.1109/hicss.2003.1174904","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"36th Annual Hawaii International Conference on System Sciences, 2003. Proceedings of the","raw_type":"proceedings-article"},{"id":"pmh:oai:CiteSeerX.psu:10.1.1.71.184","is_oa":false,"landing_page_url":"http://citeseerx.ist.psu.edu/viewdoc/summary?doi=10.1.1.71.184","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"http://www.hicss.hawaii.edu/HICSS36/HICSSpapers/STFMS03.pdf","raw_type":"text"},{"id":"pmh:oai:CiteSeerX.psu:10.1.1.98.4446","is_oa":false,"landing_page_url":"http://citeseerx.ist.psu.edu/viewdoc/summary?doi=10.1.1.98.4446","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"http://csdl.computer.org/comp/proceedings/hicss/2003/1874/09/187490331c.pdf","raw_type":"text"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Partnerships for the goals","score":0.5400000214576721,"id":"https://metadata.un.org/sdg/17"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"},{"id":"https://openalex.org/F4320309637","display_name":"Mississippi State University","ror":"https://ror.org/0432jq872"},{"id":"https://openalex.org/F4320320875","display_name":"Deutscher Akademischer Austauschdienst","ror":"https://ror.org/039djdh30"},{"id":"https://openalex.org/F4320338294","display_name":"Air Force Research Laboratory","ror":"https://ror.org/02e2egq70"},{"id":"https://openalex.org/F4320338295","display_name":"Army Research Laboratory","ror":"https://ror.org/011hc8f90"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":5,"referenced_works":["https://openalex.org/W858436891","https://openalex.org/W1566395412","https://openalex.org/W2128836143","https://openalex.org/W2158390457","https://openalex.org/W6634106278"],"related_works":["https://openalex.org/W2140998642","https://openalex.org/W2064443904","https://openalex.org/W1761928473","https://openalex.org/W2066272013","https://openalex.org/W2488601579","https://openalex.org/W2991148700","https://openalex.org/W2391901998","https://openalex.org/W1571551520","https://openalex.org/W2111290067","https://openalex.org/W2006426112"],"abstract_inverted_index":{"The":[0,138],"term":[1],"\"assurance\"":[2],"has":[3,19],"been":[4],"used":[5],"for":[6,142],"decades":[7],"in":[8,20,66,73,101],"trusted":[9],"system":[10,123],"development":[11],"as":[12],"an":[13,90,143],"expression":[14],"of":[15,23,28,32,38,80,98,106,129],"confidence":[16],"that":[17,42,85,95,120,164],"one":[18],"the":[21,29,36,46,96,107,158],"strength":[22],"mechanisms":[24,100],"or":[25,40,125,136],"countermeasures.":[26],"One":[27],"unsolved":[30],"problems":[31],"security":[33,99],"engineering":[34,109],"is":[35,103,117],"adoption":[37],"measures":[39],"metrics":[41,84,131],"can":[43],"reliably":[44],"depict":[45],"assurance":[47,82],"associated":[48],"with":[49],"a":[50,60,78,104,112],"specific":[51],"hardware":[52],"and":[53,154,157,161],"software":[54],"system.":[55],"This":[56],"paper":[57],"reports":[58],"on":[59,147],"recent":[61],"attempt":[62],"to":[63,89],"focus":[64],"requirements":[65],"this":[67],"area":[68],"by":[69],"examining":[70],"those":[71],"currently":[72],"use.":[74],"It":[75],"then":[76],"suggests":[77],"categorization":[79],"information":[81],"(IA)":[83],"may":[86],"be":[87],"tailored":[88],"organization's":[91],"needs.":[92],"We":[93],"believe":[94],"provision":[97],"systems":[102,108,135],"subset":[105],"discipline":[110],"having":[111],"large":[113],"software-engineering":[114],"correlation.":[115],"There":[116],"general":[118],"agreement":[119],"no":[121],"single":[122],"metric":[124],"any":[126],"\"one-prefect\"":[127],"set":[128,139],"IA":[130,149],"applies":[132],"across":[133],"all":[134],"audiences.":[137],"most":[140],"useful":[141],"organization":[144],"largely":[145],"depends":[146],"their":[148,151],"goals,":[150],"technical,":[152],"organizational":[153],"operational":[155],"needs,":[156],"financial,":[159],"personnel,":[160],"technical":[162],"resources":[163],"are":[165],"available.":[166]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":2},{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":1},{"year":2020,"cited_by_count":8},{"year":2019,"cited_by_count":5},{"year":2018,"cited_by_count":2},{"year":2017,"cited_by_count":4},{"year":2016,"cited_by_count":5},{"year":2015,"cited_by_count":5},{"year":2014,"cited_by_count":8},{"year":2013,"cited_by_count":6},{"year":2012,"cited_by_count":11}],"updated_date":"2026-04-04T16:13:02.066488","created_date":"2025-10-10T00:00:00"}
