论文部分内容阅读
简要介绍了核安全文化的起源和特点、核安全文化与信息安全相结合、ISO27001信息安全管理体系和国际原子能机构推荐的核机构和核行业的信息安全管理体系(ISMS,Information Security Management System)体系建设最佳实践模型。并对ISMS体系建设生命周期中的现状调研阶段、资产识别与风险评估阶段、架构设计阶段、总体规划阶段、体系建立阶段、体系试运行阶段、体系认证阶段和体系维护阶段中的主要关键点进行扼要分析,供社会各组织进行ISMS体系建设时参考。
It briefly introduces the origin and characteristics of nuclear safety culture, the combination of nuclear safety culture and information security, the ISO27001 information security management system and the ISM (Information Security Management System) system recommended by the IAEA in the nuclear industry and the nuclear industry Build best practice model. At the same time, the key points in the research stage of status quo of ISMS system construction life cycle, assets identification and risk assessment phase, architecture design phase, overall planning phase, system establishment phase, system commissioning phase, system certification phase and system maintenance phase Brief analysis, for the social organizations for ISMS system construction reference.