Quantitative Security Evaluation Model for Security Management

LI Zhi-guo,ZENG Qing-kai
DOI: https://doi.org/10.3969/j.issn.1000-3428.2008.02.035
2008-01-01
Abstract:This paper proposes a quantitative security evaluation model,BFN,which reflects the probability relationship between functional components and threats in a system,based on risk analysis approach. By this model it can quantitatively evaluate the deficiency in functional components of a system as well as its impact on the system. The experiments demonstrate that the model can compare different systems in security,and optimize a system by analyzing its weakness.
What problem does this paper attempt to address?