• 查询稿件
  • 获取最新论文
  • 知晓行业信息

企业移动互联网应用安全保障体系构建方案

Construction scheme of enterprise mobile Internet application security assurance system

  • 摘要: 针对企业内部使用的移动互联网应用安全性问题,提出了一种适用于企业的移动互联网应用安全保障体系,作为企业移动互联网应用安全设计、开发、维护及测试的依据。通过研究移动互联网应用渗透测试技术,以获悉企业移动应用易暴露的漏洞。同时参照信息系统安全等级保护大纲内容,规划企业移动互联网应用安全保障体系,从技术安全和管理安全两个方面完善体系内容。所构建的移动互联网应用安全保障体系满足内容全面性与平台普适性需求,为形成企业移动互联网应用安全防护技术要求、检测判断准则打下基础。论文最后针对企业移动互联网应用平台化发展及其所涉及的安全问题进行了研究,这对于完善企业移动互联网应用安全保障体系具有重要的意义。

     

    Abstract: In order to improve the enterprise mobile Internet application security, a security assurance system for enterprise mobile Internet applications was proposed, which was taken as safety design, development, maintenance and test basis. This paper studied on mobile Internet application penetration testing technology to learn of enterprise mobile applications easily exposed vulnerabilities, and planed the enterprise mobile Internet application security assurance system through the outline content of classified protection of information system. The assurance system completed from the viewpoint of technology safety and management safety. The mobile Internet application security assurance system constructed in this article satisfied the requirements of content integrity and platform universality, meanwhile it was laid the foundation for the formation of enterprise mobile Internet application security protection technology, detecting and judging criteria. At the end, this paper paid attention to enterprise mobile Internet application platform development and platform security problems involved. It brought an important meaning for improving the enterprise mobile application security assurance system.

     

/

返回文章
返回