摘要
信息资产是钢铁企业的重要资产,因此如何控制信息安全风险是企业面临的一个重大的问题。根据钢铁企业组织以及信息系统的架构,依据信息安全风险评估及控制理论,提出了集成技术与管理的钢铁企业信息安全风险多级控制系统框架,支持钢铁企业信息安全风险管理。
Information is an important assets for iron & steel enterprise, as calls for effective control of information security risk. In this article, we introduce a multi-level ISMS framework covering both the management and technical issues to support information security management in iron & steel enterprise. Based on the standard theory of information security analysis and controlment, extra efforts have been made according to its practical management system and network structure to satisfy the specific demands of iron & steel enterprise.
出处
《山西冶金》
CAS
2008年第4期21-23,48,共4页
Shanxi Metallurgy
关键词
钢铁企业
信息安全
多级控制系统
风险评估
iron and steel enterprise, information security, multi-level control system, risk evaluation.