论文部分内容阅读
“没有任何事情比解决错误的问题和建立错误的系统更没有效率的了。”在埋头走路之前,首先你要判断自己是否走对了方向,同样,要解决安全问题,就必须先了解安全的问题在哪儿。欧美很多国家早已意识到了信息安全风险的重要性,近年来大力加强以风险评估为核心的IT系统安全评估,并通过法规、标准手段加以保障,逐步以此形成了横跨立法、行
“Nothing is less efficient than solving the wrong problem and building the wrong system.” Before you dive in, you first have to judge whether you are on the right track or not, and to solve the security problem, you must first understand the safety Where is the problem? Many countries in Europe and the United States have long realized the importance of information security risks. In recent years, they have been making vigorous efforts to strengthen the assessment of IT systems based on risk assessment and have been protected by laws and regulations and standard measures. Gradually, they have formed a system of cross-legislative,