1Gary Stoneburner,Alice Goguen,Alexis Feringa.Risk management guide for information technology systems[R].Recommendations of the National Institute of Standards and Technology.NIST Special Publication 800-30,2002-07.
2Information security risk assessment,executive guide on information security management[R].United States General Accounting Office,1999-11.
3ISO 17799.Information technology-code of practice for information security management[S].
4ISO 13335.Information technology-ecurity techniques-guidelines for the management of IT security(GMITS)[S].
5Emile L Morse.Valuation methodologies for information management systems D-Lib magazine[J].2002,8(9):82-98.