摘要
从企业用户的角度出发,围绕云平台服务的具体模式,分析了企业信息资产所面临的信息安全风险及其影响因素,提出采用熵权法为影响因素赋予不同的权重,运用模糊综合评价法,最终计算出风险值,完成风险评估,为企业用户在不同云平台服务模式下确定风险影响因素指标权重、量化风险值提供了一种科学、可行的方法。
From the perspective of enterprise users, this paper analyzes the information security risks and influencing factors of enterprise information assets around the specific model of cloud platform services, and proposes to use entropy weight method to assign different weights to influencing factors. Integrating the fuzzy theory, the risk assessment method for risk values is finally calculated. This provides a scientific and feasible method for enterprise users to determine the risk weighting factor index weight and quantify the risk value under different cloud platform service modes.
作者
赵庆聪
ZHAO Qingcong(School of Information Management,Beijing Information Science&Technology University,Beijing 100192,China)
出处
《北京信息科技大学学报(自然科学版)》
2019年第6期42-46,52,共6页
Journal of Beijing Information Science and Technology University
基金
ISMS体系建设(S1736018)
互联网+认证审核课题
关键词
信息安全风险评估
云平台
熵权法
模糊综合评价法
information security risk assessment
cloud platform
entropy weight method
fuzzy comprehensive evaluation method