论文部分内容阅读
随着各单位信息化工作不断深入,更多的信息系统面向互联网提供公众服务。同时信息系统的安全威胁也发生了变化,安全事件的发生率也大幅增加。因此,信息安全管理中心的整体建设应遵循PDCA持续改进的管理模式,通过计划、实施、检查、改进来逐步完善,建设中应充分考虑企业目前的IT运维水平,突出重点,逐步展开,最终目标是具备感知安全威胁的能力,从被动防御向主动防御进行演进,为实现企业业务战略目标提供强有力的支撑。
With the deepening of information work of all units, more information systems provide public services for the Internet. At the same time, the security threats of information systems have also changed, and the incidence of security incidents has also increased dramatically. Therefore, the overall construction of information security management center should follow the PDCA continuous improvement management mode, and gradually improve through planning, implementation, inspection and improvement. In the construction, enterprises should fully consider the current IT operation and maintenance level of enterprises, The goal is to have the ability to perceive security threats, evolve from passive defense to proactive defense, and provide strong support for realizing the strategic goals of the enterprise.