首页> 外文会议>International Russian automation conference >Enterprise Information Security Assessment Using Balanced Scorecard
【24h】

Enterprise Information Security Assessment Using Balanced Scorecard

机译:使用平衡计分卡的企业信息安全评估

获取原文

摘要

The paper deals with an algorithm of an enterprise balanced score-card development and implementation. The balanced score card provides comprehensive assessment of all aspects of an enterprise thus resulting in its control as a whole. The approach has several advantages: it gives a complete vision of the processes at the enterprise administration disposal; it helps to avoid critical situations and security breaches, in particular, unauthorized access; it facilitates interaction at all organizational levels and ensures understanding of strategic goals by all participants in the production process. Using enterprise production process as an example the description was given to strategic goals, objectives, critical indicators and strategy map of their interrelations in order to reduce the amount of damage from unauthorized access and other security violations as well as to enhance the production process. To minimize the impact of intrusions on the enterprise productivity the set of countermeasures was elaborated. Indicators changes due to the above measures and expressed in the form of their additive convolution were evaluated and compared under different states of the system. Measures efficiency with regards to information security is assessed according to the values obtained. The measures make also possible monitoring downtime and working time at the enterprise, reducing the risk of intentional equipment damage including that due to unauthorized access, and achieving strategic goals.
机译:本文涉及企业平衡记分卡开发和实施的算法。平衡记分卡为企业的所有方面提供全面评估,从而导致整体控制。该方法有几个优势:它提供了企业管理处置的流程的完全愿景;它有助于避免批判性情况和安全漏洞,特别是未经授权的访问;它促进了所有组织层面的互动,并确保所有参与者在生产过程中了解战略目标。使用企业生产过程作为一个例子,描述了他们的相互关系的战略目标,目标,关键指标和战略地图,以减少未经授权的访问和其他安全违规行为的损害,以及提高生产过程。为了尽量减少入侵对企业生产力的影响,阐述了对策。指标由于上述措施而变化,并以其添加剂卷积的形式表达,并在系统的不同状态下进行评估。根据所得值评估关于信息安全的效率。这些措施也可以监控企业的停机时间和工作时间,减少故意设备损坏的风险,包括由于未经授权的访问,实现战略目标。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号