Device and method for risk assessment of information system based on fault tree

An information system and risk assessment technology, applied in the field of information system risk assessment devices based on fault trees, can solve problems such as the lack of effective, accurate and quantitative assessment devices and methods, lack of quantitative methods, lack of objectivity and accuracy, etc. , to achieve universal applicability, improve accuracy, and facilitate the effect of locating risks

Active Publication Date: 2021-03-12
AGRICULTURAL BANK OF CHINA
View PDF4 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] However, at present, in the field of information system security, the main body of the assessment is the operational risk of the information system; in addition, although in the field of industrial production security assessment, there are production security assessments using fault tree analysis methods, but for customer information leakage risk However, effective, accurate and quantitative evaluation devices and methods have not yet appeared
[0004] That is to say, in the field of customer information system risk assessment, the design of existing customer information systems and the risk of customer information leakage of information systems by users generally adopt subjective qualitative judgment methods, which only stay on the intuitive feeling and lack of objectivity. Sexuality and accuracy, lack of effective quantification methods

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Device and method for risk assessment of information system based on fault tree
  • Device and method for risk assessment of information system based on fault tree
  • Device and method for risk assessment of information system based on fault tree

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0029] In order to make the objects, technical solutions, and advantages of the present disclosure, the present disclosure will be described in detail below with reference to the accompanying drawings.

[0030] It should be noted that in the drawings or specification description, similar or identical portions are used. The implementation not shown or described in the drawings is a form known in the art. Additionally, although this article can provide demonstrations including specific values, it should be understood that the parameters do not need to be exactly equal to the corresponding values, but can be similar to the corresponding value within an acceptable error or design constraint. The direction term mentioned in the examples, such as "upper", "lower", "front", "post", "left", "right", etc., is only the direction of the reference. Therefore, the direction term used is illustrative and is not used to limit the scope of the present disclosure.

[0031] The present disclosure p...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides an information system risk assessment method based on a fault tree. The method comprises the steps that a customer information leakage event is used as a top event, and an intermediate event and a basic event are determined to establish the fault tree; and risk assessment is carried out on the information system based on a fault tree analysis method. The invention further provides an information system risk assessment device based on the fault tree. According to the information system risk assessment device and method based on the fault tree, universal quantitative analysis is realized; the assessment accuracy and stability are improved; the device and method facilitate risk positioning and hierarchical protection.

Description

Technical field [0001] The present disclosure relates to the field of information security, and more particularly to information system risk assessment devices and methods based on fault trees. Background technique [0002] In large information systems, such as financial information systems, often there is a massive customer information. With the rapid development of computer applications and Internet technology, information leakage is also more prominent, and safety information leaks may lead to huge economic losses. At the same time, information leakage will cause privacy violations, fake and metal fraud, etc. Brings adverse social impact. Therefore, how to risk assessment of information systems has always been the focus of information system security technology. [0003] However, in the field of information system security, it is mainly an evaluation of the main body of the operational risk of the information system; in addition, although there is a production safety assessmen...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): G06Q10/06
Inventor 贾丽谭晓辉杨旭
Owner AGRICULTURAL BANK OF CHINA
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products