The invention relates to a method for evaluating the security situation of a network and a
system thereof. The
system has a two-surface three-level framework and is provided with a public service surface and a service management surface for executing uniform coordinated management on each
functional module of the
system; according to a service logic
processing flow, the system is divided into three levels: an acquisition level, an analysis level and an exhibition level for completing four evaluating operations of assets,
frangibility,
threat and security situation; the invention is based on the characteristic of service operation in the network, combines the prior
risk evaluation method, the prior flow and the prior security detection tool and provides a set of a novel dynamic real-time evaluation method. The system can analyze the assets and service of the network and the risk of the whole network and carries out the evaluation of the security situation. The system can provide the security state of the whole network in macroscopy, can deepen to specific service and assets and know the specific security problem, thereby effectively helping
network security personnel to analyze the root of the security problem and assisting to provide a
security solution proposal and implement a defense measure.