摘要
SOC作为实现信息安全管理体系(ISMS)的技术支撑平台,是关键的网络安全基础设施。本文基于PDR2模型,提出了SOC的体系框架,并分析了SOC应具备的安全策略管理、安全预警管理、资产风险管理、安全事件集中监控、安全知识管理、安全报表管理等6大核心功能模块。
Network security operation center (SOC) is one of the key infrastructure for network security, which can support the information security management system. Base on the PDR: model, we introduced a framework of the SOC. In the framework, the SOC include 6 eoms function modules, such as the security policy management, the security alarms management, the risk management, the security events management, the knowledge management and the reports management etc.
出处
《电信科学》
北大核心
2006年第2期35-39,共5页
Telecommunications Science