Country/region
[
change
]
Terms of use
All of IBM
Home
Products
Services & solutions
Support & downloads
My account
IBM Research
Journals Home
Systems Journal
Journal of Research
and Development
Current Issue
Recent Issues
Papers in Progress
Search Journal Archives
Subscribe/Order
Description
Author's Guide
Staff
Contact Us
Related links
IBM Center for Business Optimization
IBM Research: Business Optimization
IBM Research: Marketing Optimization
Business Optimization
Volume 51, Number 3/4, 2007
Table of contents:
HTML
PDF
This article:
HTML
PDF
Copyright info
A quantitative optimization model for dynamic risk-based compliance management - References
by S.
Müller
and C.
Supatgiat
References
“Sarbanes–Oxley Act of 2002,” Public Law 107-204, 116 Stat 745, United States Code (2002).
“USA Patriot Act of 2001,” Public Law 107-56, 115 Stat 272, United States Code (2001).
P. L. Bernstein,
Against the Gods—The Remarkable Story of Risk
, John Wiley and Sons, New York, 1996.
A. J. McNeil, R. Frey, and P. Embrechts,
Quantitative Risk Management: Concepts, Techniques, and Tools
, Princeton University Press, Princeton, NJ, 2005.
J. C. Hull,
Options, Futures and Other Derivative Securities
, 2nd Edition, Prentice-Hall, Englewood Cliffs, NJ, 1993.
P. J. Schönbucher,
Credit Derivatives Pricing Models: Models, Pricing, Implementation
, John Wiley and Sons, New York, 2003.
G. E. G. Beroggi and W. A. Wallace, “Operational Risk Management—A New Paradigm for Decision-Making,”
IEEE Trans. Syst., Man & Cybernet.
24
, No. 10, 1450–1457 (1994).
M. Leippold and P. Vanini, “The Quantification of Operational Risk,”
J. Risk
8
, No. 1, 59–85 (2005).
C. Supatgiat, C. Kenyon, and L. Heusler, “Cause-to-Effect Operational Risk Quantification and Management,”
Risk Manage.
8
, 16–42 (2006).
A. Gehani and G. Kedem, “RheoStat: Real-Time Risk Management,”
Proceedings of the 7th International Symposium on Recent Advances in Intrusion Detection
(RAID 2004), Sophia Antipolis, France, September 15–17, 2004, pp. 296–314.
L.-F. Kwok and D. Longley, “Security Modelling for Risk Analysis,”
Proceedings of the IFIP 18th World Computer Congress (SEC 2004)
, Toulouse, France, August 22–27, 2004, pp. 29–46.
“Internal Control—Integrated Framework,” Committee of Sponsoring Organizations of the Treadway Commission (COSO), American Institute of Certified Public Accountants (AICPA), Jersey City, NJ, 1992.
R. Bellman,
Dynamic Programming
, Princeton University Press, Princeton, NJ, 1957.
E. Denardo,
Dynamic Programming: Models and Applications
, Dover Publications, New York, 2003.
“Control Objectives for Information and Related Technology (COBIT),” Version 4.0, IT Governance Institute, 2005; see
http://www.isaca.org/cobit
.
Operational Riskdata eXchange Association (ORX); see
http://www.orx.org/
.
About IBM
Privacy
Contact