... level of information security management. The set of control areas in the following is defined as C, the set of sections as S, and the considered enterprise e is the element of the set of overall ... is the aim of the investment ? + What is the degree of effectiveness of the investment ? + What is the financial loss and likelihood of occurrence ? + What could happen, if we would reject the ... quantitative value out of the relevance area. In this context, the barycentric method is used to harmonize the domain between the function of the lowest up to the function of the highest possible...