@article{1216, author = {Boutheina A. Fessi, Yosra Miaoui, Noureddine Boudriga}, title = {A Managerial Issues-aware Cost Estimation of Enterprise Security Projects}, journal = {Journal of Information Security Research}, year = {2013}, volume = {4}, number = {2}, doi = {}, url = {http://www.dline.info/jisr/fulltext/v4n2/4.pdf}, abstract = {While several models are provided in the literature to estimate different features of projects management: duration, effort, cost, and investment, they are not tailored to the cost estimation of security projects. We provide in this paper a new model for the managerial aware estimation of the effort required to conduct a security project. This model takes into consideration the effort related to monitoring, awareness, decision making, organizational, and decision support. Three effort estimation models are proposed depending on the information system size, the complexity of existing security policy, and the enterprise size. In the proposed model, the cost associated to the achievement of a security project is deduced from the estimated effort.}, }