首页 | 本学科首页   官方微博 | 高级检索  
     

基于ITIL体系的安全服务级别管理研究
引用本文:刘海峰,连一峰. 基于ITIL体系的安全服务级别管理研究[J]. 计算机工程与设计, 2007, 28(4): 780-784,868
作者姓名:刘海峰  连一峰
作者单位:中国科学院研究生院,信息安全国家重点实验室,北京,100049;中国科学院研究生院,信息安全国家重点实验室,北京,100049
基金项目:国家自然科学基金 , 北京市科技计划
摘    要:通过引入IT服务管理的理念,将安全运营管理定位为IT基础设施库ITIL中的服务,同时综合借鉴BS7799、NIST SP800系列以及其它有关信息安全标准的特点,构建基于ITIL的网络安全运营管理体系,帮助解决安全运营管理平台相关技术和产品的研究开发过程缺乏标准和规范的问题.服务级别管理是基于ITIL的网络安全运营管理体系保证安全服务达到组织或客户的期望并获得认可的关键,是基于安全服务级别协议的协商、定案、监控、报告和总结的过程.详细阐述了安全服务级别管理的相关概念、流程以及与安全运营管理体系其它过程间的关系.

关 键 词:IT基础设施库  服务级别管理  服务级别协议  运营级别协议  支持合同
文章编号:1000-7024(2007)04-0780-05
修稿时间:2006-06-16

Security service level management based on ITIL
LIU Hai-feng,LIAN Yi-feng. Security service level management based on ITIL[J]. Computer Engineering and Design, 2007, 28(4): 780-784,868
Authors:LIU Hai-feng  LIAN Yi-feng
Affiliation:State Key Laboratory ofInformation Security, Graduate School ofChinese Academy ofSciences, Beijing 100049, China
Abstract:By introducing the theory of IT service management and positioning security operation management as service in ITIL as well as utilizing BS7799,NIST 800 series and other security standards for reference,a network security management architecture based on ITIL is proposed to solve the problem of lacking of the uniform standard and criterion in developing the techniques and products of security operation.Security service level management is the key to meet expectations of organizations or customers and satisfy them in security services.SLM is the process of negotiation,agreement,monitoring,reporting and summary,which is based on service level agreement(SLA).The relevant concepts,procedures as well as relations with other processes are expounded.
Keywords:IT infrastructure library(ITIL)  service level management(SLM)  service level agreement(SLA)  operation level agreement(OLA)  underpinning contract(UC)
本文献已被 CNKI 维普 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号