<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.3 20210610//EN" "https://jats.nlm.nih.gov/publishing/1.3/JATS-journalpublishing1-3.dtd">
<article article-type="research-article" dtd-version="1.3" xml:lang="ru">
  <front xmlns:xlink="http://www.w3.org/1999/xlink">
    <journal-meta>
      <journal-id journal-id-type="elibrary">9004</journal-id>
      <journal-title-group>
        <journal-title>Problems of information security. Computer systems</journal-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Проблемы информационной безопасности. Компьютерные системы</trans-title>
        </trans-title-group>
      </journal-title-group>
      <issn pub-type="epub">2071-8217</issn>
    </journal-meta>
    <article-meta xmlns:xlink="http://www.w3.org/1999/xlink">
      <article-id pub-id-type="publisher-id">1</article-id>
      <article-id pub-id-type="doi">10.48612/jisp/9n2h-n5x8-2nfn</article-id>
      <title-group>
        <article-title>EVALUATION OF THE EFFECTIVENESS OF THE INFORMATION SECURITY SYSTEM</article-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Оценка эффективности системы информационной безопасности</trans-title>
        </trans-title-group>
      </title-group>
      <contrib-group>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0002-0232-7248</contrib-id>
          <contrib-id contrib-id-type="scopus">13103571000</contrib-id>
          <name>
            <surname>Zegzhda</surname>
            <given-names>Dmitry</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>zegzhda_dp@spbstu.ru</email>
        </contrib>
        <contrib contrib-type="author">
          <name>
            <surname>Saurenko</surname>
            <given-names>Tatyana</given-names>
          </name>
        </contrib>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0003-1736-7178</contrib-id>
          <name>
            <surname>Anisimov</surname>
            <given-names>Vladimir</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>an‑33@yandex.ru</email>
        </contrib>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0002-6527-2352</contrib-id>
          <name>
            <surname>Anisimov</surname>
            <given-names>Evgeny</given-names>
          </name>
          <xref ref-type="aff" rid="aff2"/>
          <email>anis.an‑33@yandex.ru</email>
        </contrib>
      </contrib-group>
      <aff id="aff1">Peter the Great St. Petersburg Polytechnic University</aff>
      <aff id="aff2">Peoples’ Friendship University of Russia named after Patrice Lumumba</aff>
      <pub-date publication-format="electronic" date-type="pub" iso-8601-date="2022-12-26">
        <day>26</day>
        <month>12</month>
        <year>2022</year>
      </pub-date>
      <issue>4</issue>
      <fpage>9</fpage>
      <lpage>19</lpage>
      <self-uri xmlns:xlink="http://www.w3.org/1999/xlink" content-type="pdf" xlink:href="https://jisp.spbstu.ru/userfiles/files/2022_4_short.pdf"/>
      <abstract xml:lang="en">
        <p>The article discusses a methodological approach to building models for evaluating the
effectiveness of programs (projects) for creating or upgrading an information security system inorder to ensure the stability and competitiveness of a company in the face of increasing threats to violate the integrity, confidentiality, availability and reliability of information that is essential for its
activities. At the same time, the effectiveness of programs (projects) is understood as the degree of
use of the opportunities allocated for their implementation of material, intangible and temporary
resources to achieve the goals. In the mathematical formalization of the generalized performance
indicator, it is taken into account that the implementation of technical, technological, organizational
and other elements (activities) included in this program (project) is accompanied by the impact of
many random factors affecting the achievement of their particular goals. The proposed generalized
indicator provides a dominant assessment of the effectiveness of programs (projects), taking into
account the risks in their implementation.</p>
      </abstract>
      <kwd-group xml:lang="en">
        <kwd>information security system of the company</kwd>
        <kwd>modernization</kwd>
        <kwd>program (project)</kwd>
        <kwd>performance indicator.</kwd>
      </kwd-group>
    </article-meta>
  </front>
</article>
