Software Examination for Senior Architect Part 2-17 Security Architecture Design Theory and Practice

Insert image description here

1 Introduction

With the development of science and technology, the security of information systems is threatened by many aspects. Designing information system security architecture requires consideration from all aspects. This is a task with considerable technical content. With years of technological development, the network security policies, regulations and institutional standards system has basically been formed, the security protection system and capabilities of critical information infrastructure have been significantly enhanced, and positive progress has been made in data security governance and personal information protection. Under the top-level design framework, data and file encryption, data integrity, communication security, access control technology, anti-attack technology and security assessment and certification are the main examination contents.

Threats to information security

1. Information system security threats come from the physical environment, communication links, network systems, operating systems, application systems, and management systems.
2. Network and information security risk categories
Network and information security risk categories can be divided into human-made deliberate destruction (passive attacks, active attacks)

Guess you like

Origin blog.csdn.net/qq_42887496/article/details/133278174