1. Symantec: IT Risk Management Report 2: Myths and Realities (2008),
http://eval.symantec.com/mktginfo/enterprise/other_resources/b-it_risk_management_report_2_01-2008_12818026.en-us.pdf
2. ISO/IEC 27005: Information Technology – Security Techniques – Information security risk management. Committee Draft (2004)
3. Parker, X.L.: Information Technology Audits. CCH, USA (2006)
4. Flood, R.L., Jackson, M.C.: Creative Problem Solving: Total Systems Intervention. Wiley, Chichester (1991)
5. Brown, J.S., Duguid, P.: Knowledge and organization: A social-practice perspective. Organization Science 12(2), 198–213 (2001)