节点文献

信息安全风险评估的定量与定性分析方法

The Methods of Quantitative Analysis and Qualitative Analysis of Information Security Risk Assessment

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 刘曼华刘萍

【Author】 LIU Man-hua1, LIU ping2 (1.Zhoukou Normal University,Zhoukou 466001,China;2.Institute of Electronic Technology,The PLA Information Engineering University,Zhengzhou 450004,China)

【机构】 周口师范学院解放军信息工程大学电子技术学院 河南周口466001河南郑州450004

【摘要】 在信息安全领域,对信息系统进行风险评估十分重要,其最终目的就是要指导决策者在“投资成本”和“安全级别”这两者之间找到平衡,从而为等级优化的资产风险制定保护策略和缓和计划。本文基于BS7799的结构特点阐述了定性与定量的分析方法在风险评估过程中的应用。

【Abstract】 In the realm of the information security, It is very important to carry the risk assessment to the information system. Its ultimate goal is to guide clecission maker finding a balance between "investment cost" and "safe class", in order to establish the protection strategy and alleviating plan for the risk of high quality assets. This these based on the characteristics of BS7799’s structure elucidates the applications of the methods of quantitative analysis and qualitative analysis in the field of risk assessment.

  • 【文献出处】 电脑知识与技术 ,Computer Knowledge and Technology , 编辑部邮箱 ,2006年11期
  • 【分类号】TP309
  • 【被引频次】17
  • 【下载频次】587
节点文献中: