{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T04:34:51Z","timestamp":1750307691560,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":26,"publisher":"ACM","license":[{"start":{"date-parts":[[2008,10,27]],"date-time":"2008-10-27T00:00:00Z","timestamp":1225065600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2008,10,27]]},"DOI":"10.1145\/1456362.1456374","type":"proceedings-article","created":{"date-parts":[[2008,11,6]],"date-time":"2008-11-06T13:49:50Z","timestamp":1225979390000},"page":"51-58","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":5,"title":["Strata-Gem"],"prefix":"10.1145","author":[{"given":"Kevin","family":"Clark","sequence":"first","affiliation":[{"name":"University of Tulsa, Tulsa, OK, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ethan","family":"Singleton","sequence":"additional","affiliation":[{"name":"University of Tulsa, Tulsa, OK, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Stephen","family":"Tyree","sequence":"additional","affiliation":[{"name":"University of Tulsa, Tulsa, OK, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"John","family":"Hale","sequence":"additional","affiliation":[{"name":"University of Tulsa, Tulsa, OK, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2008,10,27]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSAC.2005.6"},{"key":"e_1_3_2_1_2_1","volume-title":"The American Society of Mechanical Engineers","author":"Andrews J.","year":"2002","unstructured":"J. Andrews and T. Moss . Reliability and Risk Assessment . The American Society of Mechanical Engineers , New York, NY , 2002 . J. Andrews and T. Moss. Reliability and Risk Assessment. The American Society of Mechanical Engineers, New York, NY, 2002."},{"key":"e_1_3_2_1_3_1","unstructured":"AuditNet. Risk Assessment Survey and Risk Mapping Tool. http:\/\/www.auditnet.org\/.  AuditNet. Risk Assessment Survey and Risk Mapping Tool. http:\/\/www.auditnet.org\/."},{"key":"e_1_3_2_1_4_1","volume-title":"The critical success factor method: Establishing a foundation for enterprise security management. TR 010","author":"Caralli R. A.","year":"2004","unstructured":"R. A. Caralli . The critical success factor method: Establishing a foundation for enterprise security management. TR 010 , Carnegie Mellon University , 2004 . R. A. Caralli. The critical success factor method: Establishing a foundation for enterprise security management. TR 010, Carnegie Mellon University, 2004."},{"key":"e_1_3_2_1_5_1","volume-title":"Department of Computer Science","author":"Clark K.","year":"2007","unstructured":"K. Clark . Strata-gem: Quantitative risk analysis. Master's thesis , Department of Computer Science , University of Tulsa , May 2007 . K. Clark. Strata-gem: Quantitative risk analysis. Master's thesis, Department of Computer Science, University of Tulsa, May 2007."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/IAW.2005.1495978"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/IAW.2004.1437834"},{"key":"e_1_3_2_1_9_1","unstructured":"FIRST. Common vulnerability scoring system. http:\/\/www.first.org\/cvss\/.  FIRST. Common vulnerability scoring system. http:\/\/www.first.org\/cvss\/."},{"key":"e_1_3_2_1_10_1","volume-title":"Risk Management Tools","author":"Greenfield M.","year":"2000","unstructured":"M. Greenfield . Risk Management Tools . NASA Langley Research Center , May 2000 . http:\/\/www.hq.nasa.gov\/. M. Greenfield. Risk Management Tools. NASA Langley Research Center, May 2000. http:\/\/www.hq.nasa.gov\/."},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1109\/IAW.2004.1437821"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACSAC.2006.39"},{"issue":"3","key":"e_1_3_2_1_13_1","first-page":"24","article-title":"Nessus -- A powerful, free remote security scanner","volume":"11","author":"Laudicina A.","year":"2002","unstructured":"A. Laudicina . Nessus -- A powerful, free remote security scanner . Sys Admin , 11 ( 3 ): 24 -- 30 , March 2002 . A. Laudicina. Nessus -- A powerful, free remote security scanner. Sys Admin, 11(3):24--30, March 2002.","journal-title":"Sys Admin"},{"key":"e_1_3_2_1_14_1","volume-title":"Proceedings of the 1st ISSRR Workshop. ACSAC","author":"Luzwick P. G.","year":"1999","unstructured":"P. G. Luzwick . What's a pound of your information worth? Constructs for collaboration and consistency . In Proceedings of the 1st ISSRR Workshop. ACSAC , June 1999 . P. G. Luzwick. What's a pound of your information worth? Constructs for collaboration and consistency. In Proceedings of the 1st ISSRR Workshop. ACSAC, June 1999."},{"key":"e_1_3_2_1_15_1","unstructured":"Y. Munipalli. Measuring the risk factor. StickyMinds.com July 2005.  Y. Munipalli. Measuring the risk factor. StickyMinds.com July 2005."},{"key":"e_1_3_2_1_16_1","volume-title":"Technical report","author":"SA.","year":"2000","unstructured":"N SA. Infosec assessment methodology. Technical report , National Security Agency , 2000 . http:\/\/www.iatrp.com\/iam.cfm. NSA. Infosec assessment methodology. Technical report, National Security Agency, 2000. http:\/\/www.iatrp.com\/iam.cfm."},{"key":"e_1_3_2_1_17_1","volume-title":"Proceedings of the 1st ISSRR Workshop. ACSAC","author":"Peeples D. R.","year":"2001","unstructured":"D. R. Peeples . Information assurance risk metric tree . In Proceedings of the 1st ISSRR Workshop. ACSAC , May 2001 . D. R. Peeples. Information assurance risk metric tree. In Proceedings of the 1st ISSRR Workshop. ACSAC, May 2001."},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.5555\/882494.884423"},{"key":"e_1_3_2_1_19_1","volume-title":"Computer Security Strength &amp","author":"Schechter S.","year":"2004","unstructured":"S. Schechter . Computer Security Strength &amp ; Risk : A Quantitative Approach. Dissertation, Harvard University , May 2004 . S. Schechter. Computer Security Strength &amp; Risk: A Quantitative Approach. Dissertation, Harvard University, May 2004."},{"key":"e_1_3_2_1_20_1","first-page":"21","volume-title":"Attack trees: Modeling security threats. Dr. Dobb's Journal","author":"Schneier B.","year":"1999","unstructured":"B. Schneier . Attack trees: Modeling security threats. Dr. Dobb's Journal , pages 21 -- 29 , December 1999 . B. Schneier. Attack trees: Modeling security threats. Dr. Dobb's Journal, pages 21--29, December 1999."},{"key":"e_1_3_2_1_21_1","volume-title":"John Wiley and Sons","author":"Schneier B.","year":"2000","unstructured":"B. Schneier . Secrets and Lies, pages 318--333 . John Wiley and Sons , San Francisco, CA , 2000 . B. Schneier. Secrets and Lies, pages 318--333. John Wiley and Sons, San Francisco, CA, 2000."},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/366173.366185"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.5555\/829514.830526"},{"key":"e_1_3_2_1_24_1","volume-title":"NIST Special Publication 800--26: Security Self-Assessment Guide for Information Technology Systems","author":"Swanson M.","year":"2001","unstructured":"M. Swanson . NIST Special Publication 800--26: Security Self-Assessment Guide for Information Technology Systems . National Institute of Standards and Technology , November 2001 . M. Swanson. NIST Special Publication 800--26: Security Self-Assessment Guide for Information Technology Systems. National Institute of Standards and Technology, November 2001."},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"crossref","DOI":"10.6028\/NIST.SP.800-55","volume-title":"Security metrics guide for information technology systems","author":"Swanson M.","year":"2003","unstructured":"M. Swanson , N. Bartol , J. Sabato , J. Hash , and L. Graffo . Security metrics guide for information technology systems . National Institute for Standards Publication 800--55, July 2003 . M. Swanson, N. Bartol, J. Sabato, J. Hash, and L. Graffo. Security metrics guide for information technology systems. National Institute for Standards Publication 800--55, July 2003."},{"key":"e_1_3_2_1_26_1","volume-title":"Threat Modeling","author":"Swiderski F.","year":"2004","unstructured":"F. Swiderski and W. Snyder . Threat Modeling . Microsoft Press, Redmond , Washington , 2004 . F. Swiderski and W. Snyder. Threat Modeling. Microsoft Press, Redmond, Washington, 2004."},{"key":"e_1_3_2_1_27_1","first-page":"54","volume-title":"Proceedings of the 2001 IEEE Workshop on Information Assurance and Security","author":"Tidwell T.","year":"2001","unstructured":"T. Tidwell , R. Larson , K. Fitch , and J. Hale . Modeling Internet attacks . In Proceedings of the 2001 IEEE Workshop on Information Assurance and Security , pages 54 -- 59 , 2001 . T. Tidwell, R. Larson, K. Fitch, and J. Hale. Modeling Internet attacks. In Proceedings of the 2001 IEEE Workshop on Information Assurance and Security, pages 54--59, 2001."}],"event":{"name":"CCS08: 15th ACM Conference on Computer and Communications Security 2008","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control","ACM Association for Computing Machinery"],"location":"Alexandria Virginia USA","acronym":"CCS08"},"container-title":["Proceedings of the 4th ACM workshop on Quality of protection"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1456362.1456374","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1456362.1456374","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T13:29:53Z","timestamp":1750253393000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1456362.1456374"}},"subtitle":["risk assessment through mission modeling"],"short-title":[],"issued":{"date-parts":[[2008,10,27]]},"references-count":26,"alternative-id":["10.1145\/1456362.1456374","10.1145\/1456362"],"URL":"https:\/\/doi.org\/10.1145\/1456362.1456374","relation":{},"subject":[],"published":{"date-parts":[[2008,10,27]]},"assertion":[{"value":"2008-10-27","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}