8.7. To Learn More

Basic works on risk analysis are Rook's tutorial [ROO93] and the paper by Fairley and Rook [FAI97].

Two good resources on administering security are Fites [FIT89] and Wood [WOO87b].

For a discussion of the cautions of using risk analysis on software projects, see [PFL00]. This issue of the Journal of Systems and Software is a special issue on risk management for software engineering.

Get Security in Computing, Third Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.