论文部分内容阅读
前不久,“苏港千人培训计划”首度安排“江苏省信息安全管理人员专题培训团”赴香港理工大学培训,笔者有幸随团赴港交流互动中见闻感触良多。培训交流中介绍的全球及香港几起信息安全重大典型案例,尤其是专家现场演示网络攻击如入无人之境、一些门户网站后台管控权纷纷瞬间陷落,使笔者深感震撼:在全球性信息安全威胁日益凸显的情况下,社会各界亟需更新观念,把信息安全管理由一般的IT项目管理或普通的行业规章管理提升到国家战略的高度,紧紧围绕管理、技术、人才三要素,采取切实有效措施,尽快改变目前认识粗浅、管理滞后、手段乏力等令人忧虑的状况,着力打造规范有序的信息安全社会环境。
Not long ago, “Suqian Thousand Training Program” arranged for the first time “Jiangsu Province Information Security Management Training Program” went to Hong Kong Polytechnic University training, I was fortunate enough to visit Hong Kong exchange and interaction in a lot of insight. In the training exchange, there are several typical cases of information security in the world and in Hong Kong. In particular, when experts from on-site demonstrations of network attacks go into no-man’s land, some of the portals’ Under the circumstance that security threats are increasingly prominent, people from all walks of life urgently need to update their concepts. Information security management should be promoted from general IT project management or general industry regulation management to the national strategic level. Focusing on the three elements of management, technology and talent, Practical and effective measures to change as soon as possible the current understanding of superficial, lagging management, weak means such worrisome situation, strive to create a standardized and orderly social environment for information security.