详细信息

RS-UM信息系统安全保障评估模型  ( EI收录)  

RS-UM based information system security assurance evaluation model

文献类型:期刊文献

中文题名:RS-UM信息系统安全保障评估模型

英文题名:RS-UM based information system security assurance evaluation model

作者:张雪芹[1,2];江常青[3];徐萃华[1];林家骏[1]

机构:[1]华东理工大学信息科学与工程学院,上海200237;[2]杭州师范大学杭州市电子商务与信息安全重点实验室,浙江杭州310036;[3]中国信息安全测评中心,北京100089

年份:2012

卷号:35

期号:6

起止页码:147

中文期刊名:重庆大学学报(自然科学版)

外文期刊名:Journal of Chongqing University

收录:CSTPCD;;EI(收录号:20124115556205);Scopus;北大核心:【北大核心2011】;CSCD:【CSCD2011_2012】;

基金:国家自然科学基金资助项目(60773094);杭州电子商务与信息安全重点实验室开放基金资助项目(HZEB201009)

语种:中文

中文关键词:安全测评;信息系统安全保障评估模型;粗糙集;未确知测度

外文关键词:security evaluation;information system security assurance evaluation model;rough set;unascertained measure

摘要:以GB/T20274信息系统安全保障评估框架为基础,介绍了信息系统安全保障模型及其评估指标体系,给出了评估方法的形式化描述和评估流程,提出了一种基于粗糙集(rough set,RS)和未确知测度(unascertained measure,UM)理论的信息安全评估模型。在标准处理阶段,模型采用粗糙集理论获取关键指标,简化评估指标体系;在综合评估阶段,采用未确知测度模型分析客观数据,实现了对信息系统安全保障能力的定量化综合评价。
Based on the information system security assurance evaluation framework(GB/T20274),the information system security assurance model and evaluation index system are introduced,and the formalization evaluation method and flow are presented.An information security evaluation model is proposed by applying rough set(RS) and unascertained measure(UM) theory.At the criterion pre-process period,rough set theory is used to obtain the key evaluation indexes and construct the reduced index set to simplify the original complex index system.At the evaluation period,unascertained measure model is adopted to analyze the evaluation data to implement a quantitative integration evaluation on the information system security assurance ability.

参考文献:

正在载入数据...

版权所有©华东理工大学 重庆维普资讯有限公司 渝B2-20050021-7 
渝公网安备 50019002500408号 违法和不良信息举报中心