摘要
在日益复杂的网络环境下,单一的数据采集方法和检测系统难以检测各种复杂的信息安全事件。文章研究如何以《信息系统安全等级保护基本要求》为标准,开发信息安全综合监控及评估系统,综合多种采集技术对源自不同设备和安全系统的信息进行融合,实现信息系统资产的实时安全监控,实现安全评估常态化,协助系统使用单位开展基础信息网络和重要业务信息系统的等级保护工作。
In an increasingly complex network environment, a single data acqmsitlon method and detection system to detect various complex information security events is impossible. Based on" Baseline for classified protection of information system security " standard ,this paper studies how to integrate a variety of collection technology from different equipment and security system of information fusion, to develop the integrated information security monitoring and evaluation system, realize real-time monitoring information system assets, realize the security assessment of normalization, assist units who use the system to carry out basic information network and the important business information system classified protection.
出处
《信息网络安全》
2012年第5期92-95,共4页
Netinfo Security
关键词
信息安全
采集
监控
评估
information security
collecting
monitor
evaluate