Publication in conference proceedings Q4
On IT risk management ontology using DEMO
Mariana Rosa (Rosa, M.); Sérgio Guerreiro (Guerreiro, S.); Rúben Pereira (Pereira, R.);
IC3K 2020 - Proceedings of the 12th International Joint Conference on Knowledge Discovery, Knowledge Engineering and Knowledge Management
Year (definitive publication)
2020
Language
English
Country
Portugal
More Information
Web of Science®

Times Cited: 0

(Last checked: 2025-12-23 04:22)

View record in Web of Science®

Scopus

Times Cited: 0

(Last checked: 2025-12-14 10:31)

View record in Scopus

Google Scholar

Times Cited: 1

(Last checked: 2025-12-19 19:04)

View record in Google Scholar

This publication is not indexed in Overton

Abstract
Nowadays, organisations use and rely on Information Technology (IT) solutions. However, despite their benefits, IT solutions induct risks. Consequently, organisations implement Risk Management (RM), more specifically Information Technology Risk Management (IT RM), in order to maximize the effectiveness of IT usage while dealing with IT risks. Nevertheless, IT RM's implementation is not easy, since numerous standards and frameworks propose multiple RM processes to deal with IT risks. Moreover, these processes are composed of different activities causing confusion. In the end, organisations are not capable of managing risks successfully due to IT RM's complexity. To overcome IT RM diversity, a Systematic Literature Review (SLR) was conducted. The goal is to identify which are the most essential IT RM activities. The SLR results were then integrated with ISO 31000 and PMBOK standards in the form of an ontology using Design and Engineering Methodology Ontology (DEMO). The contributions of this study are: the aggregate analysis of IT RM activities through the SLR; the identification of reasons and benefits of using DEMO; a description of an IT RM's essential model designed as an ontology; and a critical view of the benefits of the ontological model proposed.
Acknowledgements
--
Keywords
DEMO,Essential model,IT RM,Ontology,SLR
Funding Records
Funding Reference Funding Entity
822404 Comissão Europeia
UIDB/50021/2020 Fundação para a Ciência e a Tecnologia