期刊文献+

一种用于信息安全的信息保障模型 被引量:5

A Information Assurance Model for Information Security
下载PDF
导出
摘要 将一种信息安全(INFOSEC)模型扩展成为一个信息保障(IA)模型,用于指导信息安全研究、工程和教育。新模型包括四维度量:安全目标,信息流状态,安全保障,时间。将信息安全的保护范畴扩大到信息资产,并对可用性、完整性和机密性重新进行了定义,增加了新内涵;采用深度防御概念,在注重技术的同时,突出了人的因素,并强调了安全管理在系统生命期重要作用。时间维的引入,使该模型真正成为动态模型。 In this article an information assurance model extended from information security model is proposed. The new model comprises four dimensions: security goal, information stream states, security assurance, and time. The objects to be protected are extended to both information and assets, and the meaning of confidentiality, integrity and availability is augmented by redefining. It is emphasized that both the people and IT security management are critical. It is a really dynamic model which can be used for information security research, engineering and education.
出处 《四川大学学报(工程科学版)》 EI CAS CSCD 2004年第4期103-106,共4页 Journal of Sichuan University (Engineering Science Edition)
关键词 信息安全 信息资产 信息保障 信息安全模型 安全管理 information security(INFOSEC) information assets information assurance(IA) information security model security management
  • 相关文献

参考文献5

  • 1戴宗坤..信息系统安全[M],2002.
  • 2[2]Bell,La Padula L.Secure computing systems:mathematical foundation and model[R].MITRE Report,MTR 2547 v2,1973. 被引量:1
  • 3[3]McCumber J.Information systems security:a comprehensive model[A].Proceedings 14th National Computer Security Conference[C].Baltimore,MD,USA,1991.124~129. 被引量:1
  • 4[4]Maconachy W V,Schou C D.A model for information assurance:an integrated approach[A].Proceedings of the 2001 IEEE Workshop on Information Assurance Security[C].NY,2001.180~185. 被引量:1
  • 5[5]Whitman M E,Mattord H J.Principles of information Security[M].Thomson Learning,2003.132~133. 被引量:1

同被引文献31

引证文献5

二级引证文献52

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部