A Real Time Information Security Risk Assessment Method

Shi Jian,Guo Shanqing,Xie Li
DOI: https://doi.org/10.3321/j.issn:1002-8331.2006.01.034
2006-01-01
Abstract:Risk assessment is critical to establishing an effective Information Security Management System and it is the foundation of information system security systematism.After introducing information security risk assessment briefly,this paper provides a real-time risk assessment method using qualitative and quantitative assessment synthetically.By analyzing the assets,vulnerabilities and threats of information system,this method can evaluate the risk of the system in real time with the events produced by security devices.
What problem does this paper attempt to address?