期刊文献+

熵权和三角模糊数相结合的定量风险评估方法 被引量:11

QUANTITATIVE RISK ASSESSMENT BASED ON ENTROPY WEIGHT AND TRIANGULAR FUZZY NUMBER
下载PDF
导出
摘要 信息安全风险评估是信息安全风险管理的重要环节。对信息系统风险的评估不仅需要考虑其独立子系统的风险,还要考虑各个子系统之间相互作用所造成的风险。在层次分析理论的基础上,提出了一种结合熵权和三角模糊数的定量风险评估方法。它用三角模糊数表示信息安全专家判断信息,通过引入熵权减少了传统权值的主观性,并考虑到系统复杂性对风险发生概率的影响,使评估结果更合理。最后通过实例说明了该方法的应用。 Information security risk assessment is an important part of information security risk management.To assess the risk of an information system,not only the risks of its independent subsystems,but also the risks caused by the interactions among subsystems should be taken into consideration.Based on the analytic hierarchy process,a quantitative risk assessment method combining entropy weight with triangular fuzzy number is proposed.Triangular fuzzy numbers are used to describe the information that estimated by the information security experts,and the entropy weight is introduced to decrease the subjectivity of conventional weights.Moreover,the effect caused by the complexity of the system on risk occurrence probability is considered as well,that makes the assessment results more reasonable.An example based on Metro information systems is introduced to illustrate the application of the proposed method.
出处 《计算机应用与软件》 CSCD 2010年第6期263-267,共5页 Computer Applications and Software
关键词 风险评估 层次分析 三角模糊数 熵权 Risk assessment Analytic hierarchical process Triangular fuzzy number Entropy weight
  • 相关文献

参考文献17

  • 1National Bureau of Standards.Guideline for Automatic Data Processing Risk Analysis[S].1979.
  • 2Bonafede C E,Giudici P.Bayesian networks for enterprise risk assessment[J].Statistical Mechanics and its Applications,2007,382(1):22-28.
  • 3李鹤田,刘云,何德全.基于Markov链的信息安全风险评估模型[J].铁道学报,2007,29(2):50-53. 被引量:18
  • 4Saaty T L.A scaling method for priorities in hierarchical structure[J].Mathematical Psychology,1979(3):243-281.
  • 5Li Wei,Shang Yumin,Ji Yanjiao.Analysis of multiple objective decision methods based on entropy weight[J].Computational Intelligence and Industrial Application,2008,1(12):953-956.
  • 6Don Linmon.Evaluating weapon system using fuzzy analytic hierarchy process based on entropy weight[J].Fuzzy System,1995(2):591-598.
  • 7Yacoub S,Cukic B,Ammar H.Scenario-based reliability analysis of component-based software[C] //Proc of Tenth Symp on Software Reliability Engineering,Florida,1999:22-31.
  • 8Sherif M Yacoub,Hany H Ammar.A method for architecture-level reliability risk analysis[J].IEEE Transactions on Software Engineering,2002,28(6):529-547.
  • 9宋如顺.基于SSE—CMM的信息系统安全风险评估[J].计算机应用研究,2000,17(11):12-14. 被引量:20
  • 10朱松岭,周平,韩毅,杨海成.基于模糊层次分析法的风险量化研究[J].计算机集成制造系统,2004,10(8):980-984. 被引量:80

二级参考文献12

共引文献124

同被引文献79

引证文献11

二级引证文献41

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部