24小时热门版块排行榜    

CyRhmU.jpeg
南方科技大学公共卫生及应急管理学院2026级博士研究生招生报考通知(长期有效)
查看: 1874  |  回复: 3
本帖产生 1 个 翻译EPI ,点击这里进行查看
当前只显示满足指定条件的回帖,点击这里查看本话题的所有回帖

cxkhjjh

木虫 (小有名气)


[交流] 求一篇论文摘要的英语翻译:基于等级保护的信息安全自动化测评研究

谢绝机器翻译
基于等级保护的信息安全自动化测评研究
摘  要
现今社会,信息安全的重要性已经不言而喻,随着国内外的政治经济竞争加剧,涉及到国家安全与国计民生的国家政府单位内部信息,其安全性的管理更是日益增强。如今,日益庞大的信息多以电子的形式存储在各类信息系统中,因此对信息系统的管理尤为重要。在这种情况下,国务院在1994年发出的147号令指出:“计算机信息系统实行安全等级保护”。并在2001年发布实施国家强制标准《计算机信息系统安全等级保护划分准则》(GB17859-1999)。然而,由于信息系统使用量比较大,分布相对分散,管理人员的的水平参差不齐,极易造成信息系统的管理出现“短板”,使大量的投入得不到应有的产出。
信息安全自动化是解决这一问题的一种方法,信息安全自动化的目标是通过技术上的符合性检查来实现信息系统的脆弱性和配置的管理,从而减少人员的工作量,使信息系统的安全水平保持一致。并在此基础上逐渐将涉及到管理符合性的检查,涉及到信息安全的各个层面,从而减少人为因素的影响。
目前我国的等级保护工作正在大力推行,然而由于信息系统分布广泛,需要投入大量的人力,因此,推行相对缓慢。本论文将信息安全自动化与等级保护工作进行结合,根据目前等级保护测评的经验,在目前等级保护测评实施方法的基础上提出一种信息测评工具设计理念:基于开放标准的信息安全测评,并实现其基本功能,即工具Vcheck。文中对Vcheck等级保护测评工具的设计思路和实现过程进行了描述,并给出了其今后的发展方向。

» 猜你喜欢

» 抢金币啦!回帖就可以得到:

查看全部散金贴

已阅   回复此楼   关注TA 给TA发消息 送TA红花 TA的回帖
cxkhjjh(金币+15):谢谢。 2010-11-15 10:41:35
cxkhjjh(金币+20):再谢。 2010-11-16 17:50:46
cxkhjjh(金币+3): 2010-11-20 09:16:56
corrected :
    The Study of information security auto-evaluation based on graded protection

In the modern society,the significance of information safety is well known to us. With national and international competitions from the political and economic fields, the safe management of the information, involved in national security and internal communication of stat-owned branches, has been increasingly strengthened, because it is close related to national economy and livelihood of the people. At present, because a plentiful of information was considerably saved in varied information systems in electronic forms, it is of significance to manage those systems carefully. Accordingly, the No.147 decree was promulgated in 1994. Namely, the graded safety protection on computer system should be brought into effect. A further forced national standard was issued, the guideline of graded protection for computer information systems. However, because of numerous processed information, relatively wide distribution and difference in the capability of the managing staff, short board from the information management system often occurs, resulting in limited gain with high payout.
       Automation of information safety is an approach to solve the above problem. The objective of automation is to test the weakness of such system by technological coincidence and fine distribution management, thus reducing the work amount and keeping the information system with the same safe level. Such check is involved in varied aspects of information safety and could reduce the man-made interference. At present, many efforts were devoted to the extension of the graded protection in our country. Because of wide distribution and numerous required man-powers, so the speed of such spread is rather low. In the paper, the information safety automation was combined with the graded protection and a novel concept was put forward, which is based on the experiences of current graded protection test and detailed test method. Namely, the realization of the basic function is founded on the base of information safety check with the open standard, called V-check tool. In addition, the designing approach and realization of the Vcheck tool for the graded protection check were discussed and the development direction in the future was pointed out.
4楼2010-11-15 09:48:28
已阅   回复此楼   关注TA 给TA发消息 送TA红花 TA的回帖
查看全部 4 个回答

wust67

金虫 (著名写手)


cxkhjjh(金币+1, 翻译EPI+1):谢谢。 2010-11-15 10:40:47
cxkhjjh(金币+30): 2010-11-20 09:16:17
基于等级保护的信息安全自动化测评研究
Study on auto-evaluation of information security based on graded protection
2楼2010-11-14 21:41:18
已阅   回复此楼   关注TA 给TA发消息 送TA红花 TA的回帖
cxkhjjh(金币+1):谢谢。 2010-11-15 10:41:09
cxkhjjh(金币+30): 2010-11-20 09:16:29
In the morden soceity,the significance of information safety is well known to us. With national and international competion from political and economic fields, the safe management of the information, involved in national safe and internal communication of stat-owned branches, has been increaseingly strenthened, because it is close related to national economy and livelihood of the people. At present, because numerous information are considerablely saved in varied information systems in electronic forms, it is of significance to manage those systems carefully. Accordingly, the No.147 decree was promulgated in 1994. Namely, the gaded safe protection on computer system should be brought into effect. A further forced national standard was issued, the guideline of graded protection for computer information systems. However, because of numerous processed information, relatively wide distrbution and difference in the capablity of the managing staff, short board from the infromation managenment system often occurs, resulting in limited gain with numerous payout.
Automation of information safety is an approach to solve the above problem. The objective of automation is to test the weakness of such system by technological coincidence and fine distrbution management, thus reducing the work amount and keeping the information system with the same safe level. Such check is involed in varied apects of information safety and could reduce the man-made interference.At present, much efforts was devoted to the extension of the graded protection in our country. Because of wide distribution and numerous required manpower, so the speed of such spread is rather low. In the paper, the information safety automation was combinated with the graded protection and a novel concept was put froward, which is based on the experiences of current graded protection test and detailed test method. Namely, the realization of the basic function is founded on the base of imformation safety check with the open stanard, called Vcheck tool. In addition, the designing approach and realization of the Vcheck tool for the graded protection check were discussed and the development direction in the future was pointed out.
3楼2010-11-14 22:20:57
已阅   回复此楼   关注TA 给TA发消息 送TA红花 TA的回帖
普通表情 高级回复(可上传附件)
信息提示
请填处理意见