Risk assessment for information security based on fuzzy membership matrix

  • Yan Bai
  • , Zhong Yao
  • , Hong Li
  • , Yong Qiang Zhang

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

According to assets, threats and vulnerabilities and other factors in risk assessment model, this paper proposed an information security and risk calculation method on the basis of fuzzy membership matrix, besides, this work also designed an information security risk assessment system to implement the above method, which achieves risk assessment from three aspects-asset identification, risk calculation and risk results processing. The system improves objectivity and practicality of information security risk assessment. Also, it can generate a risk assessment report, which can be regarded as an indicator in evaluating the safety and security construction status of a company.

Original languageEnglish
Title of host publicationNetwork Computing and Information Security
Subtitle of host publicationSecond International Conference, NCIS 2012 Shanghai, China, December 7-9, 2012 Proceedings
EditorsFu LeeWang, Mo Li, Yuan Luo
Pages547-554
Number of pages8
DOIs
StatePublished - 2012
Event2nd International Conference on Network Computing and Information Security, NCIS 2012 - Shanghai, China
Duration: 7 Dec 20129 Dec 2012

Publication series

NameCommunications in Computer and Information Science
Volume345
ISSN (Print)1865-0929

Conference

Conference2nd International Conference on Network Computing and Information Security, NCIS 2012
Country/TerritoryChina
CityShanghai
Period7/12/129/12/12

Keywords

  • fuzzy matrix
  • risk assessment
  • risk calculation

Fingerprint

Dive into the research topics of 'Risk assessment for information security based on fuzzy membership matrix'. Together they form a unique fingerprint.

Cite this