首页> 外文会议>IEEE Conference on Quality Management, Transport and Information Security, Information Technologies >Implementation of information security and data processing center protection standards
【24h】

Implementation of information security and data processing center protection standards

机译:信息安全和数据处理中心保护标准

获取原文

摘要

The article deals with the issue of information security. The purpose of the research is to analyze information security procedures, development information security systems and implementation of international information security standards. Information security involves both storing and accessing sensitive information and data warehousing. It can be carried out with Data Processing Centers. A number of standards were developed to improve efficiency of information security departments. One of them is ISO/IEC 27001. It involves requirements to information security management systems which are obligatory for certification. Along with management elements for computers and networks, ISO/IEC 27001 specifies the issues of security policy development, staff relations. Processed information security is one of the crucial issues when creating new data processing centers. Accordingly, reliability and fault-tolerance of data centers in the Uptime Institute's Tier Classification System are paid special attention to. Operational Sustainability is an additional characteristics to asses DPC's performance. Advantage of the standard is due to the flexibility of its requirements which enable objective evaluation of DPC's performance at the design stage and comparison of the current performance. Data centers can be awarded with Tier 1 to 4 depending upon the degree of reliability. Tiers is progressive: each Tier incorporates the requirements of all the lower Tiers. The Uptime Institute also developed Tier Standard: Topology and Tier Standard: Operational Sustainability which specify the methods of DPC performance evaluation. The article analyzes the key points of these standards, their advantages and implementation experience in Russian organizations.
机译:文章涉及信息安全问题。该研究的目的是分析信息安全程序,开发信息安全系统和国际信息安全标准的实施。信息安全涉及存储和访问敏感信息和数据仓库。它可以与数据处理中心进行。开发了许多标准,以提高信息安全部门的效率。其中之一是ISO / IEC 27001.它涉及对信息安全管理系统的要求,这是义务认证。除了计算机和网络的管理元素之外,ISO / IEC 27001指定了安全策略开发,员工关系的问题。处理后的信息安全是创建新数据处理中心时的重要问题之一。因此,在正常研究所的层分类系统中数据中心的可靠性和容错是特别注意的。运营可持续性是判断DPC的表现的额外特征。标准的优势是由于其要求的灵活性,使DPC在设计阶段进行客观评估并进行当前性能的比较。数据中心可以根据可靠性的程度使用Tier 1至4授予。层是渐进性:每个层都包含所有下层的要求。正常运行时间也开发了层标准:拓扑和层标准:操作可持续性,指定DPC性能评估方法。本文分析了俄罗斯组织的这些标准的关键点,其优势和实施经验。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号