首页> 外国专利> Object-oriented method, system and medium for risk management by creating inter-dependency between objects, criteria and metrics

Object-oriented method, system and medium for risk management by creating inter-dependency between objects, criteria and metrics

机译:通过在对象,准则和指标之间建立相互依赖关系来进行风险管理的面向对象的方法,系统和介质

摘要

A method, system, and medium for assessing and/or managing risks for an organization is described. The method, for example, comprises the steps of inventorying a number of assets of the organization, identifying at least one criterion defining a security objective of the organization, and identifying one or more inventoried assets that relate to the identified criterion. The assets may include one or more computers, networking equipment therefor and physical locations where the computers and networking equipment are located. The method may also include the step of formulating one or more metric equations, each metric equation being defined, in part, by the one or more identified assets. Each metric equation yields an outcome value when one or more measurements are made relating to the identified assets. The method may also include the step of assessing the risk to the organization based on the measured values of the one or more metric equations. Corresponding system, medium and means are also described.
机译:描述了一种用于评估和/或管理组织风险的方法,系统和介质。该方法例如包括以下步骤:盘点该组织的许多资产;识别至少一个定义该组织的安全目标的准则;以及识别与所识别的准则有关的一种或多种库存资产。资产可以包括一台或多台计算机,其网络设备以及计算机和网络设备所处的物理位置。该方法还可以包括制定一个或多个度量方程的步骤,每个度量方程部分地由一个或多个所标识的资产来定义。当对标识的资产进行一个或多个度量时,每个度量公式都会产生一个结果值。该方法还可以包括基于一个或多个度量方程的测量值来评估对组织的风险的步骤。还描述了相应的系统,介质和装置。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号