Making security measurable and manageable
Making security measurable and manageable
复制标题
使安全性可衡量、可管理
DOI:
--
复制
发表时间:
2008
期刊:
影响因子:
--
通讯作者:
Robert A. Martin
中科院分区:
文献类型:
--
作者:
Robert A. Martin
The security and integrity of information systems is a critical issue within most types of organizations. Finding better ways to address the topic is the objective of many in industry, academia, and government. One of the more effective approaches gaining popularity in addressing these issues is the use of standard knowledge representations, enumerations, exchange formats and languages, as well as sharing of standard approaches to key compliance and conformance mandates. By standardizing and segregating the interactions amongst their operational, development and sustainment tools and processes organizations gain great freedom in selecting technologies, solutions and vendors. These ldquomaking security measurablerdquo initiatives provide the foundation for answering todaypsilas increased demands for accountability, efficiency and interoperability without artificially constraining an organizationpsilas solution options.