摘要
论文介绍了国内外信息系统安全评估标准,给出了一种典型的信息系统安全评估方法,构建了一种典型的信息系统安全评估实施框架,并在该框架的指导下,采用定量与定性相结合的方法,对信息系统安全性进行了评估研究。
This paper introduces domestic and overseas Information system security evaluation criterion. Then it puts forward a typical method of Information system security evaluation. It also forms a typical implement framework of Information system security evaluation. Directed by this framework, we conduct the evaluation study on the security of Information system with the method of combination of qualita- tive and quantitative analysis.
出处
《计算机与数字工程》
2013年第11期1804-1806,共3页
Computer & Digital Engineering
关键词
安全威胁
安全风险
评估标准
评估方法
评估框架
security threat, security risk, evaluation criterion, evaluation method, evaluation framework