With the deepening of information work of all units, more information systems provide public services for the Internet. At the same time, the security threats of information systems have also changed, and the incidence of security incidents has also increased dramatically. Therefore, the overall construction of information security management center should follow the PDCA continuous improvement management mode, and gradually improve through planning, implementation, inspection and improvement. In the construction, enterprises should fully consider the current IT operation and maintenance level of enterprises, The goal is to have the ability to perceive security threats, evolve from passive defense to proactive defense, and provide strong support for realizing the strategic goals of the enterprise.