首页> 外文OA文献 >Introducing OCTAVE Allegro: Improving the Information Security Risk Assessment Process
【2h】

Introducing OCTAVE Allegro: Improving the Information Security Risk Assessment Process

机译:引入OCTAVE Allegro:改进信息安全风险评估流程

摘要

This technical report introduces the next generation of the Operationally Critical Threat, Asset, and Vulnerability Evaluation (OCTAVE) methodology, OCTAVE Allegro. OCTAVE Allegro is a methodology to streamline and optimize the process of assessing information security risks so that an organization can obtain sufficient results with a small investment in time, people, and other limited resources. It leads the organization to consider people, technology, and facilities in the context of their relationship to information and the business processes and services they support. This report highlights the design considerations and requirements for OCTAVE Allegro based on field experience with existing OCTAVE methods and provides guidance, worksheets, and examples that an organization can use to begin performing OCTAVE Allegro-based risk assessments.
机译:本技术报告介绍了下一代关键业务威胁,资产和脆弱性评估(OCTAVE)方法,即OCTAVE Allegro。 OCTAVE Allegro是一种简化和优化评估信息安全风险的过程的方法,使组织可以用少量的时间,人力和其他有限的资源来获得足够的结果。它引导组织在人员,技术和设施与信息及其所支持的业务流程和服务的关系的范围内考虑他们。本报告根据现有OCTAVE方法的现场经验,重点介绍了OCTAVE Allegro的设计注意事项和要求,并提供了指导,工作表和示例,组织可以使用这些指南,工作表和示例来开始执行基于OCTAVE Allegro的风险评估。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号