Model of Multilevel Fuzzy Comprehensive Risk Evaluation of Information System

Dai Zong-kun · Journal of Sichuan University · 2004

In the risk analysis of information system, it's very difficult to effectively quantify the risk with only collecting and counting data because lots of risk factors are very fuzzy. This article attempts to set up a comprehensive model to quantify the risk. At first, the hierarchy model for the probability of risk events and the severity of adverse effects are constructed. And then the Analytic Hierarchy Process (AHP) and Fuzzy Comprehensive Evaluation (FCE) method are applied to measure the weight coefficients and quantify the risk factors in the hierarchy model.The FCE method and its quantification of evaluation criteria are discussed in this paper. At last a calculation example is illustrated. It is believed that the method put forward by this paper can not only quantify the risk of information system, but also can effectively choose the strategy for risk management.

Read the paper · More papers on PaperTik