首页> 外文会议>Computer Applications in Industry and Engineering >A SYSTEMATIC APPROACH TO NETWORK SECURITY ASSESSMENT
【24h】

A SYSTEMATIC APPROACH TO NETWORK SECURITY ASSESSMENT

机译:网络安全评估的系统方法

获取原文

摘要

In this paper, we examine network security assessment process, and introduce a novel approach based on two concepts of assessment areas and the related security aspects. Assessment areas include all factors which may affect the security of a network in an organization. We classify assessment areas into three areas of network components and structure, security policy and procedure, and human/environment factors. These areas have their own related security aspects which are categorized based on the impacts which security violations within that area may have on the network. We also propose taxonomy of security aspects related to network components/structure and human/environments factors. Using the proposed approach, i.e. assessing of assessment areas against the related security aspects, we are able to assess the security of the network systemically and let the network owners and administrators to know which impacts are more expected when any violations occur and what areas are more prone to be violated. The proposed approach is mutually exclusive and includes all the issues which may have an effect on the network security (i.e. exhaustive).
机译:在本文中,我们研究了网络安全评估过程,并基于评估领域的两个概念以及相关的安全性方面介绍了一种新颖的方法。评估范围包括可能影响组织中网络安全性的所有因素。我们将评估区域分为网络组件和结构,安全策略和过程以及人员/环境因素三个区域。这些区域具有它们自己的相关安全方面,这些方面基于该区域内的安全违规可能对网络造成的影响进行分类。我们还建议与网络组件/结构和人/环境因素相关的安全方面的分类。使用提议的方法,即根据相关的安全性方面评估评估区域,我们能够系统地评估网络的安全性,并让网络所有者和管理员知道在发生任何违规情况时更期望哪些影响,而哪些领域则更多容易被侵犯。所提出的方法是互斥的,并且包括可能影响网络安全性(即穷举性)的所有问题。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号