Fuzzy Logic Based Method for Network Information Security Risk Assessment

Risk assessment for network information security is uncertainty. To control these uncertainties is of great significance for effective risk assessment. There is a big subjective of the existing assessment methods, and the conclusions are less clear. Therefore, this paper presents a fuzzy logic based network information security risk assessment method FLNISRAM. In this method, the result is from a comprehensive assessment for assets, threats and vulnerabilities of the network information system. This paper finally takes an online booking system as a case study, and has carried out an evaluation of the security risk.