摘要
描述医疗机构信息系统安全防护体系中的安全等级保护。从构建系统模型、指导行业定级、威胁风险分析、导出安全目标、调整安全要求5个步骤阐述《医疗机构信息系统安全等级保护基本要求》的研究思路、过程及部分成果。
Description of the security grading protection used in the security protection system for information systems in medical organizations. Elaboration of the research ideas, process and some outcomes for the Fundamental Requirements for Security Grade Protection of Information Systems in Medical Organizations, from the five aspects of system modeling, grading guidance for industries, threat and risk analysis, security objective output, and security adjustment.
出处
《中华医院管理杂志》
北大核心
2009年第4期217-219,共3页
Chinese Journal of Hospital Administration
关键词
医疗机构
信息系统
等级保护
Medical organization
Information system
Grade protection