{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,29]],"date-time":"2026-04-29T22:37:48Z","timestamp":1777502268712,"version":"3.51.4"},"reference-count":31,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by-nc-nd\/4.0\/"}],"funder":[{"name":"Defense Acquisition Program Administration and the Agency for Defense Development Project Name:Cyber Warfare Mission Impact Analysis Tool Development Prototype","award":["UC220012XD"],"award-info":[{"award-number":["UC220012XD"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Access"],"published-print":{"date-parts":[[2024]]},"DOI":"10.1109\/access.2024.3433404","type":"journal-article","created":{"date-parts":[[2024,7,25]],"date-time":"2024-07-25T17:31:57Z","timestamp":1721928717000},"page":"103848-103859","source":"Crossref","is-referenced-by-count":5,"title":["Research on Quantitative Prioritization Techniques for Selecting Optimal Security Measures"],"prefix":"10.1109","volume":"12","author":[{"ORCID":"https:\/\/orcid.org\/0009-0006-1457-6846","authenticated-orcid":false,"given":"Jang","family":"Jisoo","sequence":"first","affiliation":[{"name":"Department of Computer Engineering, Sejong University, Seoul, South Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0005-9263-8603","authenticated-orcid":false,"given":"Subong","family":"Jung","sequence":"additional","affiliation":[{"name":"Defense Future Technology Laboratory, LIG System, Seoul, Republic of Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Myungkil","family":"Ahn","sequence":"additional","affiliation":[{"name":"Cyber Technology Center, Agency for Defense Development, Seoul, Republic of Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0596-1199","authenticated-orcid":false,"given":"Donghwa","family":"Kim","sequence":"additional","affiliation":[{"name":"Cyber Technology Center, Agency for Defense Development, Seoul, Republic of Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3347-5048","authenticated-orcid":false,"given":"Jaepil","family":"Youn","sequence":"additional","affiliation":[{"name":"Department of Joint Education, Joint Forces Military University (JFMU), Nonsan-si, Chungcheongnam-do, Republic of Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2665-3339","authenticated-orcid":false,"given":"Dongkyoo","family":"Shin","sequence":"additional","affiliation":[{"name":"Department of Computer Engineering, Sejong University, Seoul, South Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.23919\/CYCON.2018.8405009"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.3390\/s22020538"},{"issue":"1","key":"ref3","first-page":"1","article-title":"A review of data governance regulation, practices and cyber security strategies for businesses: An Australian perspective","volume":"2","author":"Rajaretnam","year":"2020","journal-title":"Int. J. Technol. Manage. Inf. Syst."},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.37391\/ijeer.110251"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.3390\/sym14112304"},{"key":"ref6","volume-title":"Client-based web attacks detection using artificial intelligence","author":"Jiwon","year":"2023"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/ICDT57929.2023.10150899"},{"key":"ref8","volume-title":"Mitre att&ck: Design and philosophy","author":"Strom","year":"2018"},{"key":"ref9","article-title":"Toward a knowledge graph of cybersecurity countermeasures","author":"Kaloroumakis","year":"2021"},{"key":"ref10","volume-title":"Empirical Analysis of a Cybersecurity Scoring System","author":"Ahmed","year":"2019"},{"key":"ref11","volume-title":"Whats in a Security Score?","author":"Collett","year":"2016"},{"key":"ref12","volume-title":"Target Attack Shows Danger of Remotely Accessible HVAC Systems","author":"Vijayan","year":"2014"},{"key":"ref13","volume-title":"Calculating and benchmarking an entitys cybersecurity risk score","author":"Yampolskiy","year":"2016"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2022.102820"},{"key":"ref15","first-page":"113","article-title":"Intelligence-driven computer network defense informed by analysis of adversary campaigns and intrusion kill chains","volume":"1","author":"Hutchins","year":"2011","journal-title":"Leading Issues in Information Warfare & Security Research"},{"key":"ref16","first-page":"1","article-title":"A cyber attack modeling and impact assessment framework","volume-title":"Proc. 5th Int. Conf. Cyber Conflict (CYCON)","author":"Kotenko"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.6028\/nist.ir.7695"},{"key":"ref18","volume-title":"Common Vulnerability Scoring System (CVSS) Version 3.1: Specification Document","author":"Adam","year":"2019"},{"key":"ref19","volume-title":"Introduction to Vulnerability Theory","author":"Christey","year":"2009"},{"key":"ref20","volume-title":"Security Control Mappings: A Starting Point for Threat-Informed Defense","author":"Amon","year":"2021"},{"issue":"4","key":"ref21","article-title":"Enhancing cyber resilience by integrating AI-driven threat detection and mitigation strategies","volume":"4","author":"Varma","year":"2023","journal-title":"Trans. Latest Trends Artif. Intell."},{"issue":"8","key":"ref22","doi-asserted-by":"crossref","first-page":"4060","DOI":"10.3390\/s23084060","article-title":"Impact, vulnerabilities, and mitigation strategies for cyber-secure critical infrastructure","volume":"23","author":"Riggs","year":"2023","journal-title":"Sensors"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1016\/j.jmva.2014.07.009"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.6028\/nist.sp.800-61r2"},{"key":"ref25","volume-title":"The Incident Handlers Handbook","author":"Kral","year":"2011"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/icmla52953.2021.00256"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1016\/j.conengprac.2011.07.001"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/1159913.1159916"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/icatiece56365.2022.10047353"},{"key":"ref30","article-title":"Part two: Design and connectivity","volume-title":"Ethernet Networking for the Small Office and Professional Home Office","author":"Harrington","year":"2010"},{"key":"ref31","volume-title":"CCNA 200-301 Official Cert Guide","volume":"2","author":"Odom","year":"2019"}],"container-title":["IEEE Access"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/6287639\/10380310\/10609380.pdf?arnumber=10609380","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,8,7]],"date-time":"2024-08-07T04:58:59Z","timestamp":1723006739000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10609380\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"references-count":31,"URL":"https:\/\/doi.org\/10.1109\/access.2024.3433404","relation":{},"ISSN":["2169-3536"],"issn-type":[{"value":"2169-3536","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]}}}