检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:马力[1] MA Li(Information Classified Security Protection Evaluation Center of the Ministry of Public Security,Beijing 100142,China)
机构地区:[1]公安部信息安全等级保护评估中心,北京100142
出 处:《信息网络安全》2020年第3期1-8,共8页Netinfo Security
摘 要:国家网络安全等级保护标准结构和内容的变化,尤其是与等级测评环节有关的标准的变化,带来了等级测评产生结论的变化,而如何通过定量计算方法合理准确地反映等级保护对象的安全保护状况和具有的安全保护能力,一直是安全等级测评探索的方向。文章研究分析了等级测评结论的产生原理,提出了基于测评指标和测评对象的定量分析方法,通过实例证明测评指标和测评对象的权重赋值直接影响定量分析的最终结果。为了获得更加准确和具有说服力的测评结论,需要在定量计算方法中探索测评指标和测评对象的合理权重赋值方法。The change of the structure and content of the national classified protection of cybersecurity standard,especially the standard change related to the assessment of classified protection of cybersecurity,brought about the change of the conclusion of the assessment of classified protection of cybersecurity,and how to accurately reflect the security protection status and the security protection ability of the level protection object by quantitative calculation method.It has always been the direction of exploration in the assessment of classified protection of cybersecurity,This paper studies and analyzes the principle of the production of the evaluation conclusionsinclassified protection assessment,and puts forward the quantitative analysis methodbasedon the assessment requirements and the assessment objects respectively,and shows through the example that the weight assignment of the assessment requirements and theassessment objects directly affects the final result of quantitative analysis.In order to obtain more accurate and persuasive evaluation conclusions,it is necessary to explore the reasonable weighting method of the assessment requirements and the assessment objects in the quantitative calculation method.
分 类 号:TP309[自动化与计算机技术—计算机系统结构]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.145