Power enterprise information network security management system

Through the power enterprise information network security management system, real-time monitoring and early warning prompts, monitoring and management problems in power enterprise network security management have been solved, and the system's work continuity and security are improved.

CN120281547APending Publication Date: 2025-07-08GUOMAI YUNSHANG INFORMATION TECH CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202510483756.4
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-04-17
Publication Date
2025-07-08

AI Technical Summary

Technical Problem

The existing technology is difficult to effectively monitor and manage security problems in the information network of power enterprises, resulting in a decrease in system work continuity and efficiency.

Method used

A power enterprise information network security management system is designed, including security monitoring, early warning, maintenance and processing and management units. Through real-time data monitoring, early warning prompts and system collaborative management, network security and work continuity are improved.

Benefits of technology

Real-time monitoring and early warning prompts of network information of power enterprises are realized, the continuity and efficiency of system work is improved, the reliability and coordination of network security management is enhanced, illegal operations are prevented, and network security incidents are recorded for easy analysis.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120281547A_ABST
    Figure CN120281547A_ABST
Patent Text Reader

Abstract

The invention relates to the technical field of network security, in particular to a power enterprise information network security management system. Real-time network information of a power enterprise is monitored and transmitted, when customer order information is attacked, data is calculated and judged, and the data and stored equipment operation standard data range information are compared and analyzed, so that different information is transmitted according to different conditions, judgment of workers is accelerated, and the work efficiency is improved. Therefore, the working continuity of the system is ensured, the working efficiency of the system is improved, the system can more intuitively monitor and analyze different operation conditions, can make a way for solving problems according to different conditions, and gives a warning notification to maintenance personnel through the compared different conditions, judges whether to intervene or not, and carries out technical guidance. And through the alarm module, a good early warning and prompting effect is achieved, and network faults can be found and processed in time.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the field of network security technology, and particularly to an information network security management system for electric power enterprises. Background Art

[0002] Network information security is a comprehensive discipline involving multiple disciplines such as computer science, network technology, communication technology, cryptography, information security technology, applied mathematics, number theory, and information theory. It mainly refers to that the hardware, software of the network system and the data in the system are protected from being damaged, changed, or leaked due to accidental or malicious reasons, the system runs continuously, reliably and normally, and the network service is not interrupted.

[0003] However, in the prior art, with the rapid development and wide application of information technology, the network security problems of electric power enterprises are more prominent. Monitoring, managing and filtering the information transmitted between the information network of electric power enterprises and external networks, and protecting sensitive information or key data within the enterprise to achieve confidentiality, availability, integrity, controllability and auditability have become a very serious and practical problem. Single network security measures are difficult to cope with various complex security problems, resulting in the inability to carry out subsequent work of the system, and reducing the work continuity and work efficiency of the system. Summary of the Invention

[0004] In view of the deficiencies of the prior art, the technical solution adopted by the present invention to solve its technical problems is: an information network security management system for electric power enterprises, including: a security monitoring unit, a security warning unit, a maintenance processing unit, and a security management unit, wherein: the security monitoring unit is used to obtain the operation data of customer orders of electric power enterprises and then transmit it to the security warning unit; the security warning unit is used to receive the operation data of customer orders of electric power enterprises obtained by the security monitoring unit and make a judgment and reminder when the customer order information of electric power enterprises is attacked. The security warning unit is connected to the security monitoring unit; the maintenance processing unit is used to receive the maintenance information sent by the security warning unit and remind the maintenance personnel. The maintenance processing unit is connected to the section power flow display unit; the security management unit is used to track the maintenance processing situation of the maintenance processing unit and record and manage network security events with a risk degree greater than a preset risk degree threshold. The risk degree threshold is set to be displayed as "two", less than the risk degree threshold is displayed as "one", and exceeding the risk degree threshold is displayed as "three" to judge the risk. The security monitoring unit is set to monitor and transmit the real-time network information of electric power enterprises. When the customer information is attacked, the data is calculated and judged, so that the security warning unit can make corresponding warning prompts according to the monitoring information of the security monitoring unit.

[0005] The present invention is further configured such that: the security monitoring unit includes a data acquisition module and a first communication module, wherein: the data acquisition module is used to acquire the customer order data of the information network of the power enterprise in real time; the first communication module is used to connect the data acquisition module with the security warning unit.

[0006] The present invention is further configured such that: the security warning unit includes a second communication module, a calculation module, an analysis module, and an alarm module, wherein:

[0007] The second communication module is used to realize the information transmission between the security warning unit, the security monitoring unit, and the maintenance processing unit; the calculation module is used to calculate the data information transmitted by the second communication module and compare it with the network security operation standard database, and the calculation module is connected to the second communication module; the analysis module is used to compare the comparison result of the calculation module with the network security operation standard database with the standard value, and the analysis module is connected to the calculation module; the alarm module is used to warn and conduct the data analyzed by the analysis module, and the alarm module is connected to the analysis module.

[0008] The present invention is further configured such that: a standard value is preset in the analysis module. When the warning value is less than the standard data value, the security warning module issues a warning prompt; when the warning value is greater than the standard data value, the alarm module directly issues an alarm prompt; by comparing and analyzing with the stored device operation standard data range information, different information is transmitted according to different situations, thus accelerating the judgment of the staff.

[0009] The present invention is further configured such that: the alarm module gives an alarm prompt through the pop-up window of the display, and the external device gives an alarm prompt through the sound of the buzzer and the flashing of the warning light. When the warning value is greater than the standard data value, an alarm prompt is given through the prompt of the internal display, and externally through the sound of the buzzer and the flashing of the warning light, achieving a good warning prompt effect.

[0010] The present invention is further configured such that: the maintenance processing unit includes a third communication module, a solution guidance module, and a traceability tracking module, wherein:

[0011] The third communication module is used to realize the information transmission between the maintenance processing unit and the security warning unit;

[0012] The solution guidance module is used to receive the information transmitted by the third communication module and provide corresponding solutions according to the transmitted information; through the technical guidance of the system, the judgment and processing speed of the staff are accelerated, thus ensuring the continuity of the system operation.

[0013] The traceability tracking module is used to mark the problems solved by the solution guidance module; mark each generated problem, so that when the corresponding problem occurs later, the problem source can be directly traced.

[0014] The present invention is further configured that: the security management unit includes an information management module, a permission management module and a data storage module, wherein:

[0015] The information management module is used to manage and control the devices related to network security management. The devices for network security management include: firewalls, VPNs, IDSs, IPSs, UTMs, routers, switches, servers, and computers in the network; for the coordination of various systems, software and devices.

[0016] The permission management module is used to provide security protection for the management system. The permission management module includes an ID recognition authentication mode, a fingerprint recognition authentication mode and a face recognition authentication mode;

[0017] The data storage module is used to store the data of the management module.

[0018] The beneficial effects of the present invention are as follows:

[0019] 1. Monitor and transmit the real-time network information of power enterprises. When the customer order information is attacked, calculate and judge the data, and through comparative analysis with the stored standard data range information of device operation, different information is transmitted according to different situations, accelerating the judgment of staff, thus ensuring the continuity of system operation and further improving the working efficiency of the system.

[0020] 2. The system can more intuitively monitor and analyze different operating conditions, can adopt problem-solving methods for different situations, and give warning notifications to maintenance personnel through comparison of different situations, make judgments on whether to intervene, and provide technical guidance. And through the prompts on the internal display, external alarm prompts are given through the sound of the buzzer and the flashing of the warning light, achieving a good warning effect and being able to detect and handle network failures in a timely manner.

[0021] 3. Through the information management module, the coordination between various system devices is ensured. The permission management module improves the security of logging in to the system, can effectively prevent illegal operations by logging in to the system using others' information, and through the data storage module, records each network security event in the database, facilitating comparative analysis for future network maintenance, and further improving the security and reliability of the information network security management system of power enterprises. Description of the Drawings

[0022] Figure 1 is the system diagram of the present invention;

[0023] Figure 2 is the system diagram of the safety monitoring unit of the present invention;

[0024] Figure 3 is the system diagram of the safety warning unit of the present invention;

[0025] Figure 4 is the system diagram of the maintenance processing unit of the present invention;

[0026] Figure 5 is the system diagram of the safety management unit of the present invention.

[0027] In the figure: 100, safety monitoring unit; 110, data acquisition unit, 120, first communication module; 200, safety warning unit; 210, second communication module; 220, calculation module; 230, analysis module; 240, alarm module; 300, maintenance processing unit; 310, third communication module; 320, solution guidance module; 330, traceability tracking module; 400, safety management unit; 410, information management unit; 420, permission management unit; 430, data storage module. Specific embodiments

[0028] The present invention will be further described in detail below in conjunction with the accompanying drawings and specific embodiments. The embodiments of the present invention are given for purposes of illustration and description, and are not exhaustive or limit the present invention to the disclosed form. Many modifications and variations are obvious to those of ordinary skill in the art. The embodiments are selected and described to better illustrate the principles and practical applications of the present invention, and enable those of ordinary skill in the art to understand the present invention and thus design various embodiments with various modifications suitable for specific purposes.

[0029] Embodiment:

[0030] Please refer to Figure 1 - Figure 5, the present invention provides a technical solution: a power enterprise information network security management system, including: a security monitoring unit 100, a security warning unit 200, a maintenance processing unit 300, and a security management unit 400, where: the security monitoring unit 100 is used to obtain the operation data of customer orders of the power enterprise and then transmit it to the security warning unit 200; the security warning unit 200 is used to receive the operation data of customer orders of the power enterprise obtained by the security monitoring unit 100 and make a judgment and reminder when the customer order information of the power enterprise is attacked. The security warning unit 200 is connected to the security monitoring unit 100; the maintenance processing unit 300 is used to receive the maintenance information sent by the security warning unit 200 and remind the maintenance personnel. The maintenance processing unit 300 is connected to the section power flow display unit 200; the security management unit 400 is used to track the maintenance processing situation of the maintenance processing unit 300 and record and manage network security events with a risk degree greater than the preset risk degree threshold. The risk degree threshold is set to be displayed as "two", less than the risk degree threshold is displayed as "one", and exceeding the risk degree threshold is displayed as "three" to judge the risk. The security monitoring unit is set to monitor and transmit the real-time network information of the power enterprise. When the network fluctuates, the data is calculated and judged, so that the security warning unit can make corresponding warning prompts according to the monitoring information of the security monitoring unit.

[0031] The security monitoring unit 100 includes a data acquisition module 110 and a first communication module 120, where: the data acquisition module 110 is used to acquire the customer order data of the power enterprise information network in real time; the first communication module 130 is used to connect the data acquisition module 110 to the security warning unit 200.

[0032] The security warning unit 200 includes a second communication module 210, a calculation module 220, an analysis module 230, and an alarm module 240, where: the second communication module 210 is used to realize the information transmission between the security warning unit 200, the security monitoring unit 100, and the maintenance processing unit 300; the calculation module 220 is used to calculate the data information transmitted by the second communication module 210 and compare it with the network security operation standard database. The calculation module 220 is connected to the second communication module 210; the analysis module 230 is used to compare the comparison result of the calculation module 220 with the network security operation standard database with the standard value. The analysis module 230 is connected to the calculation module 220; the alarm module 240 is used to warn and conduct the data analyzed by the analysis module 230. The alarm module 240 is connected to the analysis module 230.

[0033] The analysis module 230 is preset with standard values. When the warning value is less than the standard data value, the security warning module issues a warning prompt; when the warning value is greater than the standard data value, the alarm module 240 directly issues an alarm prompt; by comparing and analyzing with the stored information on the standard data range of device operation, different information is transmitted according to different situations, thus accelerating the judgment of the staff.

[0034] The alarm module 240 gives an alarm prompt through the pop-up window on the display, and the external device gives an alarm prompt through the sound of the buzzer and the flashing of the warning light. When the warning value is greater than the standard data value, through the prompt on the internal display, and externally through the sound of the buzzer and the flashing of the warning light for alarm prompt, achieving a very good warning prompt effect.

[0035] The maintenance processing unit 300 includes a third communication module 310, a solution guidance module 320, and a traceability tracking module 330, where: the third communication module 310 is used to realize the information transmission between the maintenance processing unit 300 and the security warning unit 200; the solution guidance module 320 is used to receive the information transmitted by the third communication module 310 and provide corresponding solutions; the traceability tracking module 330 is used to mark the problems solved by the solution guidance module 320; through the technical guidance of the system, the judgment and processing speed of the staff are accelerated, thus ensuring the continuity of the system operation, and marking each generated problem, so that when the corresponding problem occurs again later, the problem source can be directly traced.

[0036] The security management unit 400 includes an information management module 410, a permission management module 420, and a data storage module 430, where: the information management module 410 is used to manage and control the devices related to network security management, and the devices for network security management include: firewalls, VPNs, IDSs, IPSs, UTMs, routers, switches, servers, and computers in the network; the permission management module 420 is used to provide security protection for the management system, and the permission management module 420 includes ID recognition authentication mode, fingerprint recognition authentication mode, and face recognition authentication mode; the data storage module 430 is used to store the data of the management module 420. The coordination between various system devices is ensured, the permission management module improves the security of logging in to the system, which can well prevent illegal operations by logging in to the system using others' information, and through the data storage module, each network security event is recorded in the database, which is convenient for subsequent network maintenance for comparative analysis, further improving the security and reliability of the information network security management system of the power enterprise.

[0037] Obviously, the described embodiments are only a part of the embodiments of the present invention, rather than all embodiments. All other embodiments obtained by those of ordinary skill in the art and related fields based on the embodiments in the present invention without creative efforts shall fall within the scope of protection of the present invention. Structures, devices, and operation methods not specifically described and explained in the present invention, unless otherwise specified and limited, shall be implemented by conventional means in the art.

Claims

1. An information network security management system for power enterprises, characterized in that, Including: A security monitoring unit (100), a security warning unit (200), a maintenance processing unit (300), and a security management unit (400), where: The security monitoring unit (100) is used to obtain the operation data of customer orders of power enterprises and then transmit it to the security warning unit (200); The security warning unit (200) is used to receive the operation data of customer orders of power enterprises obtained by the security monitoring unit (100) and make a judgment and reminder when the customer order information of power enterprises is attacked. The security warning unit (200) is connected to the security monitoring unit (100); The maintenance processing unit (300) is used to receive the maintenance information sent by the security warning unit (200) and remind the maintenance personnel. The maintenance processing unit (300) is connected to the section power flow display unit (200); The security management unit (400) is used to track the maintenance processing situation of the maintenance processing unit (300) and record and manage network security events with a risk degree greater than the preset risk degree threshold. The risk degree threshold is set to be displayed as "two", less than the risk degree threshold is displayed as "one", and exceeding the risk degree threshold is displayed as "three" to judge the risk.

2. The information network security management system for power enterprises according to claim 1, wherein: The security monitoring unit (100) includes a data acquisition module (110) and a first communication module (120), where: The data acquisition module (110) is used to obtain the customer order data of the information network of power enterprises in real time; The first communication module (130) is used to connect the data acquisition module (110) with the security warning unit (200).

3. A power enterprise information network security management system according to claim 1, characterized in that: The security warning unit (200) includes a second communication module (210), a calculation module (220), an analysis module (230), and an alarm module (240), where: The second communication module (210) is used to realize the information transmission between the security warning unit (200), the security monitoring unit (100), and the maintenance processing unit (300); The calculation module (220) is used to calculate the data information transmitted by the second communication module (210) and compare it with the network security operation standard database. The calculation module (220) is connected to the second communication module (210); The analysis module (230) is used to compare the comparison result of the calculation module (220) with the network security operation standard database with the standard value. The analysis module (230) is connected to the calculation module (220); The alarm module (240) is used to warn and conduct the data analyzed by the analysis module (230). The alarm module (240) is connected to the analysis module (230).

4. The information network security management system for power enterprises according to claim 3, characterized in that: A standard value is preset in the analysis module (230). When the warning value is less than the standard data value, the security warning module issues a warning prompt; when the warning value is greater than the standard data value, the alarm module (240) directly issues an alarm prompt.

5. A power enterprise information network security management system according to claim 4, characterized in that: The alarm module (240) gives a prompt through a pop-up window on the display, and external devices give an alarm prompt through the sound of a buzzer and the flashing of a warning light.

6. The information network security management system for power enterprises according to claim 1, characterized in that: The maintenance processing unit (300) includes a third communication module (310), a solution guidance module (320), and a traceability tracking module (330), where: The third communication module (310) is used to implement information transmission between the maintenance processing unit (300) and the security warning unit (200); The solution guidance module (320) is used to receive the information transmitted by the third communication module (310) and provide corresponding solutions; The traceability tracking module (330) is used to mark the problems solved by the solution guidance module (320).

7. A power enterprise information network security management system according to claim 1, characterized in that: The security management unit (400) includes an information management module (410), a permission management module (420), and a data storage module (430), where: The information management module (410) is used to manage and control devices related to network security management. The devices for network security management include: firewalls, VPNs, IDSs, IPSs, UTMs, routers, switches, servers, and computers in the network; The permission management module (420) is used to provide security protection for the management system. The permission management module (420) includes an ID recognition authentication mode, a fingerprint recognition authentication mode, and a face recognition authentication mode; The data storage module (430) is used to store the data of the management module (420).