期刊文献+

基于多属性层次分析的信息安全风险评估方法 被引量:6

Risk Assessment Method of Information Security Based on Multiple Attribute and AHP
下载PDF
导出
摘要 信息系统安全风险本质上是动态、多目标、多属性的风险共存过程。为了真实、准确地反映信息系统安全的总体风险,降低分析判断中主观因素的影响。文章在AHP的基础上,根据多属性决策的理论与方法,对AHP中因素的非相关性进行修正,省略了规则层与因素层之间的权重关系,利用多属性影响因素之间相关性对信息系统安全进行风险评估分析与计算,实现了从对象族单一评价,关键因素的关联到系统整体的全局评价。 The security risk of information system is essentially a process coexisted with dynamic,multi-objective,and multi-attribute risks.In order to truly and accurately reflect overall risks of information system security and reduce the subjective factors influence in the analysis and judgments,under the theory and method of multiple attribute decision,the non-correlation of factors in the AHP method is amended while omitting the weight relationship between the rule layer and the factor level,and the risk assessment of information system security is analyzed and calculated according to the correlation between factors,realize overall situation appraise form unitary appraise of objects and be related of key factors to entirety.
出处 《信息安全与技术》 2011年第11期3-6,共4页
基金 教育部信息安全类教育教学改革项目(NO:J ZW201011)
关键词 信息安全 AHP 多属性 风险评估 information security AHP multiple attribute risk assessment method
  • 相关文献

参考文献1

二级参考文献5

  • 1United States General Accounting Office, Accounting and Information Management Division. Information Security Risk Assessment[Z]. Augest 1999.
  • 2National Institute of Standards and Technology. Special Publications 800-30, Risk Management Guide(DRAFT)[Z]. June 2001.
  • 3BUTLER S A, FISCHBECK P. Multi-Attribute Risk Assessment, Technical Report CMD-CS-01-169[R]. December 2001.
  • 4BUTLER S A. Security Attribute Evaluation Method: A Cost-Benefit Approach[Z]. Computer Science. Department, 2001.
  • 5PELTIER T R. Information Security Risk Analysis[Z]. Rothstein Associates Inc, 2001.

共引文献307

同被引文献30

引证文献6

二级引证文献16

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部