Study on Security Risk Assessment for Information System
Chen Song · Communications technology · 2012
The concept of security risk assessment for information system is given.The essential factors and common methods for security risk assessment are analyzed.Based on those and in consideration of the confronted threats,potential vulnerabilities,and some determined strategies for security control,a process of security risk assessment for information system is proposed.The proposed assessment process could improve the accuracy of security risk assessment,and by comprehensively considering the confronted potential security threats,the existing vulnerabilities and security unascertainable factors,could raise efficiency and accuracy of the security risk assessment.