首页> 外国专利> SECURITY RISK ASSESSMENT APPARATUS AND ASSESSMENT METHOD IN CLOUD COMPUTING ENVIRONMENT AND METHOD OF RECOMMENDING CLOUD SERVICE PROVIDER BY USING SECURITY RISK ASSESSMENT RESULT

SECURITY RISK ASSESSMENT APPARATUS AND ASSESSMENT METHOD IN CLOUD COMPUTING ENVIRONMENT AND METHOD OF RECOMMENDING CLOUD SERVICE PROVIDER BY USING SECURITY RISK ASSESSMENT RESULT

机译:云计算环境中的安全风险评估设备和评估方法以及使用安全风险评估结果推荐云服务提供商的方法

摘要

Disclosed are a security risk assessment apparatus and assessment method in a cloud computing environment, and a method of recommending a cloud service provider by using results of security risk assessment. The security risk assessment apparatus according to one embodiment of the present invention includes: an occurrence probability vector determining unit for determining an occurrence probability vector for a security threat to a cloud service which is determined based on a degree of security accident occurrence in the cloud service; security control item determining unit for determining one or more security control items which is a physical method of performing a security control of the cloud service in accordance with types of the cloud service; a weight value determining unit for determining a weight value for the security control item for each of the determined security control items; a security level value determining unit for determining a security level value for the security control item for each of the determined security control items; and a security risk assessing unit for quantitatively assessing a security risk for a security threat to the cloud service provided by the cloud service provider by using the occurrence probability vector, the one or more security control items, the weight value of security control item, and the security level value.;COPYRIGHT KIPO 2015
机译:公开了云计算环境中的安全风险评估设备和评估方法,以及通过使用安全风险评估的结果来推荐云服务提供商的方法。根据本发明的一个实施例的安全风险评估设备包括:发生概率向量确定单元,用于确定基于对云服务的安全事故发生的程度而确定的对云服务的安全威胁的发生概率向量。 ;安全控制项确定单元,用于确定一个或多个安全控制项,这是根据云服务的类型对云服务进行安全控制的物理方法;权重值确定单元,用于为所确定的每个安全控制项目确定安全控制项目的权重值;安全等级值确定单元,用于为所确定的每个安全控制项目确定安全控制项目的安全等级值;安全风险评估单元,用于通过使用所述发生概率矢量,所述一个或多个安全控制项目,所述安全控制项目的权重,以及对所述云服务提供商提供的对所述云服务的安全威胁的安全风险进行定量评估。安全级别值。; COPYRIGHT KIPO 2015

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号