An information system safety test quality evaluation method and system

A technology for security testing and information systems, applied in the field of information system security testing quality evaluation calculation methods and systems, can solve the problems of uncontrollable security testing, inability to guarantee test results and completeness, etc., to achieve easy data acquisition, completeness assurance, Ease of formula calculation

Active Publication Date: 2019-06-18
北京国舜科技股份有限公司
View PDF6 Cites 5 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0006] The embodiment of the present invention provides a method and system for evaluating the quality of information system security testing, which is used to solve the problems in the prior art that the security testing is uncontrollable, and the testing effect and completeness cannot be guaranteed.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • An information system safety test quality evaluation method and system
  • An information system safety test quality evaluation method and system
  • An information system safety test quality evaluation method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0023] In order to make the purpose, technical solutions and advantages of the embodiments of the present invention clearer, the technical solutions in the embodiments of the present invention will be clearly and completely described below in conjunction with the drawings in the embodiments of the present invention. Obviously, the described embodiments It is a part of embodiments of the present invention, but not all embodiments. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without creative efforts fall within the protection scope of the present invention.

[0024] refer to figure 1 , figure 1 It is a schematic flowchart of a method for evaluating the quality of information system security testing provided by an embodiment of the present invention, and the provided method includes:

[0025] S1. Obtain the test width of the information system security test according to the system function point cover...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The embodiment of the invention provides an information system safety test quality evaluation method and system, and the method comprises the steps: obtaining the test width of an information system safety test according to a system function point coverage rate and a safety demand verification rate in the safety test; According to the core service function threat troubleshooting rate and the edgeservice function threat troubleshooting rate in the safety test, obtaining the test depth of the information system safety test; And according to the test width and the test depth, in combination withthe complexity of the information system, performing calculation to obtain safety test quality evaluation of the information system. The embodiment of the invention provides a method. evaluating thesafety test of the information system; The safety test is evaluated by selecting related data of the safety test and the complexity corresponding to the information system, the selected data is simpleand easy to obtain, formula calculation is simple and convenient, the safety test can be quoted by general enterprises, the completeness of the safety test is ensured, and the traditional safety testis visualized by recording the threat verification process of the safety test.

Description

technical field [0001] The embodiments of the present invention relate to the field of computer technology, and in particular to a method and system for evaluating and calculating the quality of an information system security test. Background technique [0002] During the information system life cycle, before the information system is put into production, most financial institutions will conduct a pre-launch security test on the information system to measure the security of the information system. However, with the normalization of security testing work, there is no practical standard for the quality evaluation of security testing. The results of security testing are mixed, and some systems go online with diseases, resulting in economic losses for enterprises due to system loopholes. [0003] As the supervision of information system security becomes more and more stringent, security testing work is gradually normalized. Some financial institutions such as banks, insurance co...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F11/36
Inventor 丁勉姜强胡云汤志刚
Owner 北京国舜科技股份有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products