首页|EDMC数据安全治理模型的研究与实现

EDMC数据安全治理模型的研究与实现

扫码查看
数据安全治理从组织战略、组织文化、组织建设、业务流程、规章制度、技术工具等各方面全面提升数据安全风险应对能力.文章在ISO 38505系列标准的基础上,对实际需求进行研究和实践,设计研究以评估-指导-监测-检查为过程的EDMC数据安全治理模型.模型通过评估数据在当前和未来的安全状况,并依据评估结果制定数据安全战略来指导管理活动.通过技术手段,监测数据在业务访问、使用、流转过程中的行为,针对可能出现的数据安全事件进行监测和预警.最后对已定义的数据安全策略、规则的遵从性、监测的有效性进行检查,确保相关策略执行到位.
Research and Implementation of EDMC Data Security Governance Model
The EDMC Data Security Governance Model enhances an organization's ability to respond to data security risks and breaches by addressing security requirements and vulnerabilities from various aspects,such as organizational strategy,culture,construction,business processes,regulations,and technical tools.This model is designed based on practical needs,On the basis of ISO 38505 series standards,conducting research and practice to evaluate,direct,monitor,and check the implementation of data security policies and controls.Through technical means,the behavior of data in the process of business access,use and circulation is monitored and early warning is carried out for possible data security incidents.Finally,the compliance of defined data security policies,rules,and monitoring effectiveness are checked to ensure that relevant policies are implemented in place.

data security governancedata security monitoringdata security assessment

陈龙、方伟、姚威、陈杨轲

展开 >

中国移动通信集团浙江有限公司杭州分公司,浙江 杭州 310012

广州熠数信息技术有限公司,广东 广州 510630

数据安全治理 数据安全监测 数据安全评估

2024

数字通信世界
电子工业出版社

数字通信世界

影响因子:0.162
ISSN:1672-7274
年,卷(期):2024.(4)
  • 5