Conference Papers Year : 2014

Risk Reduction Overview

Hellen Janine Havinga
  • Function : Author
  • PersonId : 994590
Olivier Theobald Sessink
  • Function : Author
  • PersonId : 994591


The Risk Reduction Overview (RRO) method presents a comprehensible overview of the coherence of risks, measures and residual risks. The method is designed to support communication between different stakeholders in complex risk management. Seven reasons are addressed why risk management in IT security has many uncertainties and fast changing factors, four for IT security in general and three for large organizations specifically. The RRO visualization has been proven valuable to discuss, optimize, evaluate, and audit a design or a change in a complex environment. The method has been used, evaluated, and improved over the last six years in large government and military organizations. Seven areas in design and decision making are identified in which a RRO is found to be beneficial. Despite the widely accepted need for risk management we believe this is the first practical method that delivers a comprehensive overview that improves communication between different stakeholders.
Fichier principal
Vignette du fichier
978-3-319-10975-6_18_Chapter.pdf (272) Télécharger le fichier
Origin Files produced by the author(s)

Dates and versions

hal-01403999 , version 1 (28-11-2016)




Hellen Janine Havinga, Olivier Theobald Sessink. Risk Reduction Overview. International Cross-Domain Conference and Workshop on Availability, Reliability, and Security (CD-ARES), Sep 2014, Fribourg, Switzerland. pp.239-249, ⟨10.1007/978-3-319-10975-6_18⟩. ⟨hal-01403999⟩
182 View
125 Download


