首页> 外文会议>International Conference on Information Management, Innovation Management and Industrial Engineering;ICIII 2009 >Formalized Method Based on Extenics for Information Security Risk Identification
【24h】

Formalized Method Based on Extenics for Information Security Risk Identification

机译:基于可拓的形式化信息安全风险识别方法

获取原文

摘要

Information security risk has become an important attention for todayȁ9; s most organizations and risk management was introduced as an effective mechanism. The risk analysis, including risk identification and estimation, is the basis of risk management. In practice, most studies on risk analysis focus on estimation method and identification of risk elements is nothing but reference to given tables. This paper presents a formalized risk identification method that performs an overall analysis on organization from material, antithetical, dynamic and systematic nature by utilizing conjugate analysis method. This method is one of extension methods in Extenics and identifies systematically and comprehensively not only risk elements but also relationships between them and provides sufficient information for the following risk estimation to ensure effectiveness of risk management.
机译:信息安全风险已成为当今的重要关注点[9]。在大多数组织中,引入风险管理是一种有效的机制。风险分析(包括风险识别和估计)是风险管理的基础。实际上,大多数有关风险分析的研究都集中在估计方法上,而风险要素的识别只不过是参考给定的表格。本文提出一种形式化的风险识别方法,利用共轭分析方法从实质,对立,动态和系统性等方面对组织进行全面分析。此方法是可扩展性中的一种扩展方法,不仅可以系统,全面地识别风险要素,还可以识别它们之间的关系,并为后续的风险估算提供了足够的信息,以确保风险管理的有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号