ISSI logo

Papers

Minimizing the Cost of Information Assurance. A white paper that describes the process that ISSI has traditionally used to maximize security and minimize cost.

Integrating Security Into Your System An outline that probably has some points that you may not have thought of.

A Typical Security Project Diagram This diagram illustrates how ISSI approaches the interaction between the client, the production contractor for a new security product and the analysis and evaluation processes.

The Evaluation of a Security Product This diagram illustrates how ISSI works with a client who is considering integrating a security product or solution into their system.

Risk Management- a non-numeric solution An approach to risk management that has been well-received by clients.  It provides the decision-maker with easy to understand results from an easy to understand method.

A New Risk Management Paradigm This paper by George Jelen is similar to the one above but provides more background and references. 

Using Operations Security Techniques to Reduce Security Risk and Cost This paper by George Jelen describes how OPSEC can supplement technical security--some really good ideas about controlling security costs rationally.