Definition Edit

Cost-risk analysis is

[t]he assessment of the cost of potential risk of loss or compromise of data in a computer system without data protection versus the cost of providing data protection.[1]
[t]he assessment of the costs of providing data protection for a system versus the cost of losing or compromising the data.[2]

References Edit

  1. Auditing and Financial Management: Glossary of EDP Terminology, at 5.
  2. Department of Defense, National Computer Security Center, Glossary of Computer Security Terms (NCSC-TG-004, Ver. 1) (Oct. 21, 1988).

