Research on Information Security Risk Evaluation Model Based on the National Draft
Peng Ze-wei · Computer Knowledge and Technology · 2009
Guided by the national draft-the information security risk assessment guide issued in 2005,this paper gives an implementable In-formation Security Risk Evaluation Quantification Model with reference to the management-control ideas of NIST SP800-30 on how to calculate a threat possibility.