摘要
对基于贝叶斯网络的多属性信息安全风险评估方法研究,结合历史上发生的安全事件资料,评估安全威胁和脆弱性的概率,计算出各安全要素的风险值。对信息系统风险评估进行量化,使评估结果更加科学和客观。
A security risk assessment on Bayesian network and multi-attribute was presented.Firstly,integration with the information of security incidents in the history,assess the probability of security threats and vulnerabilities of the various security elements.Then,the risk of the various security elements was calculated.The risk assessment of the information systems was quantified,so that the result of the assessment was more scientific and objective.
出处
《计算机安全》
2010年第9期4-5,9,共3页
Network & Computer Security
基金
国家自然科学基金(60973139
60773041)
南京邮电大学引进人才项目(NY208006)
关键词
信息系统
贝叶斯
多属性
风险评估
information systems
Bayesian
multi-attribute
risk assessment