首页> 美国政府科技报告 >Work Priority Scheme for EDP (Electronic Data Processing) Audit and Computer Security Review
【24h】

Work Priority Scheme for EDP (Electronic Data Processing) Audit and Computer Security Review

机译:EDp​​(电子数据处理)审计和计算机安全审查工作优先计划

获取原文

摘要

The report describes a high level risk analysis for Automated Information Systems (AISs) that can be used by computer security reviewers and EDP auditors to prioritize their non-discretionary and discretionary review activities for these AISs. It divides the risk analysis problem into five areas of risk concern (called dimensions) with each area defined by a set of characteristics. The five dimensions are: Criticality/Mission Impact, Size/Scale/Complexity, Environment/Stability, Reliability/Integrity, and Technology Integration. The report presents a possible two-level scoring scheme which calculates the level of risk for each dimension, uses the Criticality score as a first order system risk score, and then combines all five dimension risk scores for a second order system risk score. An approach for deriving an EDP audit or computer security review plan using these scores is outlined.

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号