The humn beings are stepping into the information society. The information industry develops very rapidly, so do the hackers, trick-playing teens, exploring children, fraudsters, and serious wite-collar criminals. Thus, information security becomes an impending important issue.
In case of information breach, the victims—government department, an organization, or an institution, or a company will inevitably suffer great or small loss. Government may be threated with national security. Companies may lose opportunities to develop new projects. And the public's and users' will be damaged.
Then how to deal with this issue? Technology is only a partial solution to information security. What's more important is that organizations and companies should promote the awareness on information security to its staff. However, since no system can ever be 100 percent secure, a prevention-only approach to information security mangaement is not enough. Companies and organizations should adopt a dual approach to information security management by combining prevention and detection techniques.
信息安全
人類的人類步入信息社會(huì)。信息產(chǎn)業(yè)的發(fā)展非常迅速,所以做黑客,惡作劇的青少年,探索兒童,騙子,和嚴(yán)重的在白領(lǐng)罪犯。因此,信息安全成為一個(gè)迫在眉睫的重要問題。
在信息泄露案,受害者的政府部門,一個(gè)組織,或機(jī)構(gòu),或大或小的公司將不可避免地遭受損失。政府可能威脅國(guó)家安全。公司可能會(huì)失去機(jī)會(huì)開發(fā)新項(xiàng)目。而公眾和用戶將受損。
那么如何處理這個(gè)問題?技術(shù)只是一個(gè)部分解決信息安全。更重要的是組織和公司應(yīng)促進(jìn)其工作人員的信息安全意識(shí)。然而,由于沒有系統(tǒng)能百分之100的安全,預(yù)防安全管理信息的辦法是不夠的。公司和組織應(yīng)該采取一個(gè)信息安全管理的雙重方法相結(jié)合的預(yù)防和檢測(cè)技術(shù)。
In case of information breach, the victims—government department, an organization, or an institution, or a company will inevitably suffer great or small loss. Government may be threated with national security. Companies may lose opportunities to develop new projects. And the public's and users' will be damaged.
Then how to deal with this issue? Technology is only a partial solution to information security. What's more important is that organizations and companies should promote the awareness on information security to its staff. However, since no system can ever be 100 percent secure, a prevention-only approach to information security mangaement is not enough. Companies and organizations should adopt a dual approach to information security management by combining prevention and detection techniques.
信息安全
人類的人類步入信息社會(huì)。信息產(chǎn)業(yè)的發(fā)展非常迅速,所以做黑客,惡作劇的青少年,探索兒童,騙子,和嚴(yán)重的在白領(lǐng)罪犯。因此,信息安全成為一個(gè)迫在眉睫的重要問題。
在信息泄露案,受害者的政府部門,一個(gè)組織,或機(jī)構(gòu),或大或小的公司將不可避免地遭受損失。政府可能威脅國(guó)家安全。公司可能會(huì)失去機(jī)會(huì)開發(fā)新項(xiàng)目。而公眾和用戶將受損。
那么如何處理這個(gè)問題?技術(shù)只是一個(gè)部分解決信息安全。更重要的是組織和公司應(yīng)促進(jìn)其工作人員的信息安全意識(shí)。然而,由于沒有系統(tǒng)能百分之100的安全,預(yù)防安全管理信息的辦法是不夠的。公司和組織應(yīng)該采取一個(gè)信息安全管理的雙重方法相結(jié)合的預(yù)防和檢測(cè)技術(shù)。

