期刊文献+

信息安全风险评估的模糊多准则决策方法 被引量:3

Fuzzy Multi-Criteria Decision Making Method of Information Security Risks Assessment
原文传递
导出
摘要 基于ISO/IEC17799标准建立了一个综合的信息系统风险分析框架,并运用模糊多准则决策(FMCDM)方法计算信息安全风险,根据风险等级矩阵(RLM)对信息资产风险进行级别划分,最终建立评估信息资产相关风险的完整模型。 This research addresses the aspects of confidentiality, integrity and availability of information security and consolidates the opinions of security experts and ISO/IEC 17799 on information risks, in order to construct an integrated framework for risk analysis. The Fuzzy Multi-Criteria Decision Making (FMCDM) method is applied to calculate the information security risks. Then the risk level matrix (RLM) is used to categorize the risk management measures and to create a complete model for the assessment of information assets related risks.
作者 陈光 匡兴华
出处 《信息安全与通信保密》 2006年第7期23-25,共3页 Information Security and Communications Privacy
关键词 信息安全 风险评估 信息资产 模糊多准则决策 information security risk assessment information assets fuzzy multi-criteria decision making
  • 相关文献

参考文献4

  • 1[1]Peltier T R.Information security risk analysis[M].Florida:CRC Press LLC,2001
  • 2[2]Stonebumer G,et al.Risk management guide for information technology systems-Special publication 800-30[S].National Institute of Standards and Technology of US,2002
  • 3[3]ISO/IE C 17799:Information technology-Code of practice for information security management[S].International Organization for Standardization,2000
  • 4[4]Kangri R,Riggs L S.Construction risk assessment by linguistics[J].IEEE Transaction Engineering Management,1989,(36):126-131

同被引文献20

引证文献3

二级引证文献18

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部