首页> 外文会议>Asian Conference on Intelligent Information and Database Systems >Importance-Performance Analysis Based Evaluation Method for Security Incident Management Capability
【24h】

Importance-Performance Analysis Based Evaluation Method for Security Incident Management Capability

机译:基于Instance Inflific Incermence管理能力的评估方法

获取原文

摘要

SEI's Incident Management Capability Metrics provides an over-view of how the metrics can be used to evaluate and improve organizations' information security incident management capability. However, there still exist several deficiencies when using SEI's Metrics to measure the function areas of security incident management capability. An importance-performance analysis based evaluation method for measuring and improving organizations' information security incident management capability was proposed in this paper. The evaluation method produces a four-quadrant IPA matrix that considers both importance and performance simultaneously for better identifying function areas needing improvement. A numerical example of the evaluation method showed that the proposed method is efficient for deploying continuous improvement program and better allocating limited resources.
机译:SEI的事件管理能力指标提供了如何用于评估和改进组织信息安全事件管理能力的指标。但是,使用SEI的指标时仍存在多种缺陷,以测量安全事件管理能力的功能区域。本文提出了一种基于重要性分析的测量和改进组织信息安全事件管理能力的评估方法。评估方法产生四象限的IPA矩阵,同时考虑重要性和性能,以便更好地识别需要改进的功能区域。评估方法的数值示例表明,该方法对于部署连续改进程序和更好地分配有限资源是有效的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号