An Approach for Information Systems Security Risk Assessment on Fuzzy Set and Entropy Weight
电子学报2010年38卷第7期 页码:1489-1494
作者机构:
1. 海军工程大学信息安全系,湖北,武汉,430033
2. 华中师范大学计算机科学系,湖北,武汉,430079
作者简介:
基金信息:
DOI:
中图分类号:TP393
纸质出版:2010
稿件说明:
移动端阅览
FONT face, Verdana, 付钰, 等. 基于模糊集与熵权理论的信息系统安全风险评估研究[J]. 电子学报, 2010,38(7):1489-1494.
FONT face, Verdana, FU Yu, et al. An Approach for Information Systems Security Risk Assessment on Fuzzy Set and Entropy Weight[J]. Acta Electronica Sinica, 2010, 38(7): 1489-1494.
FONT face, Verdana, 付钰, 等. 基于模糊集与熵权理论的信息系统安全风险评估研究[J]. 电子学报, 2010,38(7):1489-1494.DOI:
FONT face, Verdana, FU Yu, et al. An Approach for Information Systems Security Risk Assessment on Fuzzy Set and Entropy Weight[J]. Acta Electronica Sinica, 2010, 38(7): 1489-1494.DOI:
<FONT face=Verdana>The risk factors of information systems are classified into three aspects of influence on asset
frequency of threat and severity extent of survivabulity
which are analysed based on the fuzzy set theory to describe their fuzzyvalued grades.And their membership matrices for judgement set are presented.Then the weights of the risk factors are calculated with the entropy theory to reduce the subjectivity.The approach of comprehensive eveluation is applied into integrating the respective risk assessment results of such three factors to obtain the final risk grade.Finally
an illustrative example is shown that this proposed method is effective and reliability.