摘要
为把握交通运输行业网络安全整体状况,本文参考美国国家标准与技术研究院(NIST)网络安全框架、等级保护安全技术设计框架、信息安全保障指标体系框架等通用型安全能力评价模型和特色行业安全能力评价模型,明确交通运输行业网络安全评价对象和评价原则,建立交通运输行业网络安全评价体系,构建网络安全建设情况指数、网络安全运行能力指数、网络安全态势指数等评价模型,并引入专家调查法确定权重和指数加权分析法计算。该评价模型对促进交通运输行业网络安全防御体系迭代建设、持续提升交通运输行业网络安全防护水平具有重要意义。
Referring to the National Institute of Standards and Technology(NIST)network security framework,the generic level protection security technology design framework and the information security assurance index system framework,this paper clarified the evaluation objects and evaluation principles of transportation industry network security.It is found that,the transportation industry network security evaluation system included network security construction index,network security operation capability index and network security situation index.Concurrently,this paper introduced expert survey method to determine weight and index weighting analysis method to calculate.The evaluation model is of great significance for promoting the construction of network security defense system and improving the level of network security protection of transportation industry.
作者
魏彬
黄海涛
王涛
彭思远
WEI Bin;HUANG Haitao;WANG Tao;PENG Siyuan(Sangfor Technologies Inc.,Shenzhen 518000,China;China Academy of Transportation Science,Beijing 100010,China)
出处
《综合运输》
2023年第11期43-48,53,共7页
China Transportation Review
关键词
交通运输
网络安全
评价指数
评价模型
安全风险
Transportation
NIST Network security
Evaluation index
Evaluation model
Security risk