Font Size: a A A

The Research Of Information Security Risk Assessment Standard And Method

Posted on:2010-04-01Degree:MasterType:Thesis
Country:ChinaCandidate:Z X LiuFull Text:PDF
GTID:2178360275455658Subject:Management Science and Engineering
Abstract/Summary:PDF Full Text Request
With rapid development of IT,the operation of the society has been more and more depended on information and information system.The security events increase quickly and security issues tend to be serious.We must take more attention on the information security situation.Information security is not only about security technology and products.Therefore evaluating risk effectively,selecting effective defense measures and defending information threats actively are the key points of resolving security problems of information system.At first,this dissertation introduces the theory in risk assessment of information security.Through the analysis of the international popular information security assessment standard BS7799,ISO13335,CC.Obtains the structure of the BS7799 standard is extremely clear.With the aid of it implements the risk assessment clear and influent.Based on analyzing the common risk assessment method,the paper adopts method combining with fuzzy comprehensive evaluation model and gray comprehensive evaluation model The feasible nature of this method has been confirmed through the simulation research.
Keywords/Search Tags:Risk assessment, BS7799 standard, Risk assessment method
PDF Full Text Request
Related items