首页> 外文期刊>International Journal of Information Management >A multidimensional approach to information security risk management using FMEA and fuzzy theory
【24h】

A multidimensional approach to information security risk management using FMEA and fuzzy theory

机译:基于FMEA和模糊理论的信息安全风险管理多维方法。

获取原文
获取原文并翻译 | 示例
       

摘要

Because of the evolution and widespread use of the Internet, organisations are becoming more susceptible to attacks on Information Technology Systems. These attacks result in data losses and alterations, and impact services and business operations. Therefore, to minimise these potential failures, this paper presents an approach to information security risk management, encompassing Failure Mode and Effects Analysis (FMEA) and fuzzy theory. This approach analyses five dimensions of information security: access to information and systems, communication security, infrastructure, security management and secure information systems development. To illustrate the proposed model, it was applied to a University Research Group project. The results show that the most important aspects of information security risk are communication security, followed by infrastructure.
机译:由于Internet的发展和广泛使用,组织变得更容易受到对信息技术系统的攻击。这些攻击导致数据丢失和更改,并影响服务和业务运营。因此,为了最大限度地减少这些潜在故障,本文提出了一种信息安全风险管理方法,其中包括故障模式和后果分析(FMEA)和模糊理论。这种方法分析了信息安全的五个方面:对信息和系统的访问,通信安全,基础结构,安全管理和安全信息系统的开发。为了说明建议的模型,将其应用于大学研究小组的项目。结果表明,信息安全风险最重要的方面是通信安全,其次是基础架构。

著录项

  • 来源
  • 作者单位

    School of Engineering, Centre for Technology and Geosciences, Department of Production Engineering, Universidade Federal de Pernambuco, Recife PE,Caixa Postal 5125, CEP: 52.070-970, Brazil;

    School of Engineering, Centre for Technology and Geosciences, Department of Production Engineering, Universidade Federal de Pernambuco, Recife PE,Caixa Postal 5125, CEP: 52.070-970, Brazil;

    School of Engineering, Centre for Technology and Geosciences, Department of Production Engineering, Universidade Federal de Pernambuco, Recife PE,Caixa Postal 5125, CEP: 52.070-970, Brazil;

    School of Engineering, Centre for Technology and Geosciences, Department of Production Engineering, Universidade Federal de Pernambuco, Recife PE,Caixa Postal 5125, CEP: 52.070-970, Brazil;

    School of Engineering, Centre for Technology and Geosciences, Department of Production Engineering, Universidade Federal de Pernambuco, Recife PE,Caixa Postal 5125, CEP: 52.070-970, Brazil;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    Information security; Risk management; FMEA; Fuzzy theory;

    机译:信息安全;风险管理;FMEA;模糊理论;
  • 入库时间 2022-08-18 02:21:55

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号