论文部分内容阅读
当前保险行业各保险机构的信息安全管理、建设、评价各自为政,缺乏可参照的行业依据及标准。由于缺乏相应的安全标准,也造成了行业信息安全监管在评价、验收等环节上的缺失。本文针对以上问题,分析其行业特点,参考国内外相关标准,设计指标体系;采用综合分析法设计指标体系框架模型;采用专家调研法选取指标;提出指标体系的监管应用模式以及评价方法。
At present, the information security management, construction and evaluation of various insurance institutions in the insurance industry are independent and lacks the industrial basis and standards that can be referred to. Due to lack of corresponding safety standards, it also caused the lack of information security supervision in the evaluation, acceptance and other sectors. In view of the above problems, this paper analyzes the characteristics of the industry, refers to the relevant standards at home and abroad, and designs the index system. It adopts the comprehensive analysis method to design the framework model of the index system, selects the index using the expert research method, and proposes the regulatory application mode and evaluation method of the index system.