The invention discloses a sensitive data auditing method based on
trusted computing, which belongs to the technical field of sensitive
data security auditing, and comprises the following steps: acquiring a framework
topological graph of a target
system, determining a plurality of specified sensitive
data processing areas, and deploying
trusted computing base components for each area to establish a trusted execution environment; based on the historical access
record, performing access behavior analysis on the plurality of specified sensitive
data processing areas, and generating a corresponding normal access behavior baseline; constructing an access behavior judgment model according to the normal access behavior baseline, and performing access behavior judgment on the current access
record to obtain a judgment result; and obtaining a corresponding access
record based on the abnormal access behavior, performing analysis, obtaining reference audit data corresponding to the access subject, performing abnormal risk analysis, calculating a risk coefficient value of the reference audit data, obtaining a
risk level corresponding to the abnormal access behavior, and triggering a graded early warning response mechanism.