首页> 外文会议>2010 Second International Conference on Advances in Computing, Control and Telecommunication Technologies >Information Technology Risk Measurement Using NIST (Case Study at Pt. Pintraco)
【24h】

Information Technology Risk Measurement Using NIST (Case Study at Pt. Pintraco)

机译:使用NIST的信息技术风险衡量(Pintraco案例研究)

获取原文

摘要

The purpose of this study is to measure how big the risk level associated existing information technology at PT. Phintraco and how to minimize the risk of information technology. The research methodology used involves library research, documentation studies and interviews, collected data were analyzed using the NIST method. Results from this study indicate there are 13 types of risks that might occur, one of them at high risk (Malicious code) and there are two risks with a medium risk level (Information theft, server hangs). The conclusion was that risk controls has been applied quite good but still there are some weaknesses in it, among others: the password is not changed periodically, there is no documentation about the system, the right of access to the IT division is too free, antivirus programs inadequate.
机译:本研究的目的是测量风险级别相关的现有信息技术在PT的程度。 Phintraco以及如何最大限度地减少信息技术的风险。使用的研究方法涉及图书馆研究,文档研究和访谈,使用NIST方法分析收集的数据。本研究的结果表明,可能发生了13种类型的风险,其中一个风险(恶意代码),其中有两个风险级别(信息盗窃,服务器挂起)。结论是风险控制已经应用了很好,但仍然存在一些弱点,其中防病毒程序不足。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号