宇航计测技术

• 论文 • 上一篇    下一篇

信息安全绩效测量体系研究

董亦兵1;张林山1   

  1. 1、中国人民银行清算总中心,北京 100048
  • 出版日期:2019-06-25 发布日期:2019-06-25
  • 作者简介:董亦兵(1967.08-),女,高级工程师,硕士,主要研究方向:金融行业信息安全、信息科技风险管理。

Research on Information Security Performance Measurement System

DONG Yi-bing1;ZHANG Lin-shan1   

  1. 1、China National Clearing Center,Beijing 100048,China
  • Online:2019-06-25 Published:2019-06-25

摘要: 绩效管理是指组织内各级管理者和员工为了达到组织目标共同参与的绩效计划制定、绩效辅导沟通、绩效考核评价、绩效结果应用、绩效目标提升的持续循环过程,绩效管理的目的是持续提升个人、部门和组织的绩效。良好的绩效管理体系能够激发管理者和员工的工作积极性、创造性,自发改进组织目标的实现过程,提高目标实现的效率和效果。相反,糟糕的绩效管理体系给组织带来的负面影响也是巨大的。信息安全管理是组织管理的重要组成部分。本文立足组织信息安全管理,重点研究信息安全绩效测量体系制定环节,结合国际国内相关标准,剖析信息安全绩效测量体系的设计方法,分享设计思路。

关键词: 绩效管理, 信息安全绩效管理, 绩效测量体系

Abstract: Performance management refers to the continuous cycle of performance planning,performance counseling and communication,performance appraisal,application of performance results and improvement of performance objectives,in which managers and employees at all levels participate to achieve organizational goals.The purpose of performance management is to continuously improve the performance of individuals,departments and organizations.While a good performance management system can stimulate the enthusiasm and creativity of employees and managers,spontaneously improve the process to accomplish organizational goals,and improve the efficiency and effectiveness of achieving goals;a poor performance management system to a certain organization may bring huge negative impact.Information security management is an important part of organizational management.Based on information security performance management,this paper focuses on the development of information security performance plan by combining the relevant international and domestic standards,and analyses the design method of information security performance measurement system and shares the design ideas.

Key words: Performance management, Information security performance management, Performance measurement system