当前位置:主页 > 科技论文 > 软件论文 >

S银行信息安全人为影响因素及对策研究

发布时间:2018-01-18 15:44

  本文关键词:S银行信息安全人为影响因素及对策研究 出处:《东华大学》2016年硕士论文 论文类型:学位论文


  更多相关文章: 信息安全 人为影响因素 信息系统


【摘要】:信息系统已经逐渐成为社会各个领域不可或缺的基础设施,人们在享受信息技术所带来的巨大利益的同时也面临着信息安全问题的严峻考验。对于银行来说,信息系统覆盖了组织内所有的业务处理,为客户提供渠道服务,为组织内部运营管理和办公提供信息服务。随着信息化的不断深入,信息资产越来越重要,面临的安全威胁也越来越越多,造成的危害也越来越大,银行正面临前所未有的信息安全风险。S银行建立了全行性信息安全管理和决策机构—总行信息科技管理委员会,该机构由总行科技管理部和分行信息科技管理领导小组构成,该机构负责对S银行全行信息安全管理规章制度、信息安全相关策略、信息安全报告评估等重大事项进行审议,推动全行深入开展信息安全管理工作。S银行信息安全防护技术手段主要包括对外和对内两个方面,对外防御外部的攻击和入侵,对内保护企业信息泄露,从而保障企业信息安全。通过对S银行信息安全现状的梳理,同时对S银行和同行业信息安全事件进行回顾,信息安全事件发生的原因可分为人员因素、技术因素、环境因素。人员是企业信息安全管理中最重要的因素,任何信息安全相关活动都离不开人员。企业信息系统的设计、投产、运营和维护都是由人员来完成。本研究对目前信息安全人为影响因素风险文献进行梳理,特别是信息安全人为影响因素的分类和成因,并根据S银行信息安全存在的问题,编制S银行信息安全人为影响因素问卷表,对200名员工进行问卷调研,采用SPSS统计软件对问卷结果进行分析。对调查问卷数据进行题项、可靠性和效度分析,并通过描述性统计分析S银行信息安全人为影响因素状态。再通过独立样本T检验和单因素方差分析,研究S银行信息安全人为影响因素在人口统计变量上的差异,结果显示性别、年龄、学历、工龄、职位层次在S银行信息安全人为影响因素上不存在显著差异。最后S银行信息安全人为影响因素进行相关分析,结果显示个体心理特征因子和其他三个因子(员工安全意识、信息安全自我认识和能效、组织和环境因素)无显著相关关系。员工安全意识、信息安全自我认识和能效、组织和环境因素三个因子彼此之间具有显著正相关。根据研究结果,结合S银行信息安全存在的问题,提出S银行信息安全优化对策,包括信息安全文化建设、信息安全培训长效机制建立和加强有效沟通的建议,降低S银行信息安全人为风险。
[Abstract]:Information system has gradually become an indispensable infrastructure in all fields of society. People are facing the severe test of information security while enjoying the huge benefits brought by information technology. The information system covers all the business processing in the organization, provides the channel service for the customer, provides the information service for the organization internal operation management and the office. With the development of the information technology, the information assets become more and more important. The more security threats they face, the greater the harm they pose. Bank is facing unprecedented information security risk. S Bank has established the all Bank Information Security Management and Decision-making Organization-head Office Information Technology Management Committee. The organization is composed of the head office science and technology management department and the branch information technology management leading group. The organization is responsible for the information security management rules and regulations and information security related strategies of S bank. Information security report evaluation and other important issues to be considered to promote the Bank's in-depth information security management work. S bank information security protection technical means mainly include external and internal two aspects. External defense against external attacks and incursions, internal protection of enterprise information leakage, so as to ensure enterprise information security. Through the S bank information security status quo combing. At the same time, the information security events of S bank and the same industry are reviewed. The causes of information security incidents can be divided into personnel factors, technical factors, environmental factors. Personnel are the most important factors in the enterprise information security management. Any information security related activities can not be separated from personnel. The design, production, operation and maintenance of enterprise information system are accomplished by personnel. Especially the classification and cause of information security human factors. According to the problems of S bank information security, the questionnaire table of S bank information security human factors is compiled, and 200 employees are investigated. SPSS statistical software was used to analyze the results of the questionnaire. The questionnaire data were analyzed by item, reliability and validity. And through descriptive statistical analysis of S bank information security artificial factors, and then through independent samples T-test and single-factor ANOVA. To study the difference of human factors of information security in S bank in demographic variables, the results show that gender, age, education, length of service. There is no significant difference in the position level in the artificial factors of information security in S bank. Finally, the correlation analysis of artificial factors of information security in S bank is carried out. The results showed that there was no significant correlation between individual psychological factors and the other three factors (employee safety awareness, information security self-awareness and energy efficiency, organizational and environmental factors). Information security self-awareness and energy efficiency, organization and environmental factors have significant positive correlation with each other. According to the research results, combined with S bank information security problems. The optimization countermeasures of information security of S Bank are put forward, including the construction of information security culture, the establishment and strengthening of effective communication mechanism of information security training, and the reduction of artificial risk of information security in S Bank.
【学位授予单位】:东华大学
【学位级别】:硕士
【学位授予年份】:2016
【分类号】:TP309;F832.33

【相似文献】

相关期刊论文 前10条

1 魏严;信息安全形势:不容乐观[J];电子展望与决策;2000年06期

2 吴晓波;谈网络信息安全问题[J];现代情报;2000年05期

3 刘爱民;我国信息安全的发展思路[J];中国计算机用户;2000年12期

4 王伟军;;网络信息安全问题的根源分析[J];图书馆杂志;2000年04期

5 ;信息安全是保证信息化发展的必要手段[J];电信科学;2001年12期

6 杨光亮;关注信息安全[J];w挛胖芸,

本文编号:1441539


资料下载
论文发表

本文链接:https://www.wllwen.com/kejilunwen/ruanjiangongchenglunwen/1441539.html


Copyright(c)文论论文网All Rights Reserved | 网站地图 |

版权申明:资料由用户9ae56***提供,本站仅收录摘要或目录,作者需要删除请E-mail邮箱bigeng88@qq.com