UDC 614.8; 002.6: 004.89

Authors

A.A. Azarov, O.V. Vasiliev, A.V. Suvorova, V.A. Azarova

Abstract

The paper describes the application of the method of randomized composite indicators in the formation of an assessment of potential damage that may
be inflicted upon the company in the event of a leak of confidential information in the event of a socially engineering attack by an attacker. This assessment is used in a comparative analysis of the effectiveness of various measures aimed at increasing the level of security of users of the information system from the social engineering attack of an attacker. The article also discusses the possibilities of using this method in the event of complete or partial lack of information.

Keywords

information security, analysis of the security of users of information systems, socioengineering attacks, randomized method
summary indicators.