张 鑫, 刘文霞, 黄宇峰, 范勇峰. WAMS信息安全风险评估[J]. 现代电力, 2010, 27(1): 61-66.
引用本文: 张 鑫, 刘文霞, 黄宇峰, 范勇峰. WAMS信息安全风险评估[J]. 现代电力, 2010, 27(1): 61-66.
Zhang Xin, Liu Wenxia, Huang Yufeng, Fan Yongfeng. Information Security and Risk Assessment of WAMS System[J]. Modern Electric Power, 2010, 27(1): 61-66.
Citation: Zhang Xin, Liu Wenxia, Huang Yufeng, Fan Yongfeng. Information Security and Risk Assessment of WAMS System[J]. Modern Electric Power, 2010, 27(1): 61-66.

WAMS信息安全风险评估

Information Security and Risk Assessment of WAMS System

  • 摘要: 建立了WAMS通信系统的信息安全评估框架。通过功能域和ISO/IEC 27002标准将WAMS分为若干子功能域并确定待评估的信息资产, 再由功能树模型将功能与资产关联, 确立系统信息安全评价的层次结构, 并分配各子功能及下属资产的关键度。最后利用证据推理算法融合各子资产的判定数据, 减少不同专家评判产生的信息模糊性。算例表明, 建立的框架和评估方法对提高WAMS系统的信息安全有一定意义, 该框架也可应用在电力安全评估的其他方面。

     

    Abstract: An information security assessment framework is established for the WAMS communication system. Based on the function tree model and the ISO/IEC 27002 standard, the WAMS system is divided into several sub domains, and the information assets are identified. Combining the function with the assets, the hierarchical structure of the evolution is established for the information security of the WAMS system, and the key values for the sub functions and assets are distributed. The evidence theory is used to integrate the decision data of experts, which reduces the fuzzy of information generated from the assessments of different experts. Example analysis shows that the established framework and the assessment method are useful to improve the information security of the WAMS system. The framework can also be effectively used in other aspects of the security assessment of power systems.

     

/

返回文章
返回