论文部分内容阅读
文章在深入研究标准信息安全体系结构、充分考量结构合理性的基础上,结合空管行业特点,遵循体系设计原则,选取模糊综合评价方法,建立了信息安全风险评估模糊综合评价模型,并对风险评估结果判定和风险管理流程进行了改进,通过归一化方法把个体系统特征统一到整体安全评估系统当中,进一步延伸,能够实现每一环节都有例证来准确反映风险状况的目的。
On the basis of deeply studying the standard information security architecture and fully considering the rationality of the structure, combining with the characteristics of the ATC industry and following the principles of system design, we select the fuzzy comprehensive evaluation method and establish the fuzzy comprehensive evaluation model of the information security risk assessment. The assessment of the outcome of the decision and risk management process has been improved through the normalization of the individual system features unified into the overall safety assessment system which further extends to achieve every aspect of an illustration to accurately reflect the purpose of risk status.