摘要
通过对国内外政府数据开放共享的需求、模式和安全现状进行调研分析,提出政府数据开放共享中政府数据权属关系需明确等安全问题,并从政策法规、标准配套、交换共享平台安全技术体系构建、数据服务能力评估等方面提出安全保障建议,同时构建了包括数据确权、数据分类分级、数据脱敏、安全标记、多级访问控制、数据族谱、安全审计、授权管理等的安全技术和安全管理防护体系,为政府数据开放共享打造"可用不可见"的安全空间。
By doing a comprehensive survey on governmental data opening and sharing requirements, model and present situation, list related security issues and challenges, and then give some suggestions about big data security assurance, from dimensions as policies and regulations, security standards, data sharing platform construction, and service- provider's security capabilities. At last, a big data security architecture including security techniques and management is proposed, taking data ownership, classification, security labeling, multilevel access control, data lineage, security audit, authorization management into consideration, in the purpose of providing a data "available but invisible" exchange space for governmental data sharing
出处
《信息技术与标准化》
2016年第6期22-25,34,共5页
Information Technology & Standardization
基金
国家科技支撑计划基金项目
项目编号:2015BAK21B04
工信部工控安全评估专项
项目编号:工信软函[2015]336号)
国家智能制造专项
项目编号:京财经一指[2015]1170号
关键词
政府数据
开放共享
安全保障
数据交换共享平台
数据确权
数据脱敏
governmental data
opening and sharing
security assurance
data exchange platform
data ownership
data masking