Information Security Risk Assessment in Building Information System
Zhu Ji-feng
Abstract
Zhu Ji-feng
Abstract
Risk assessment, the basic method for finding vulnerabilities, should be implemented before the system construction, and even more, in the whole process from its design to its operation and to its reject. The information security risk assessment is the foundation for building information system and the key to information security engineering. This paper analyzes the present situation of information security risk assessment both at home and abroad, including related standard system, methods and processes of assessment, discusses the urgent problems in the information security risk assessment in accordance with the current development.
A significance statement is not available in the OpenAlex record.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
Risk assessment, the basic method for finding vulnerabilities, should be implemented before the system construction, and even more, in the whole process from its design to its operation and to its reject. The information security risk assessment is the foundation for building information system and the key to information security engineering. This paper analyzes the present situation of information security risk assessment both at home and abroad, including related standard system, methods and processes of assessment, discusses the urgent problems in the information security risk assessment in accordance with the current development.
Key concepts: Computer science, Risk assessment, Information security, Computer security, Information security management, Risk analysis (engineering), Threat, Key (lock)