Page 287 - 捷運技術 第28期
P. 287

28         92    2                       281























                   Schendel & Hofer, 1979







                                                                                                  Security
                 Policy Theory, SPT                        Risk Management Theory, RMT
                           Control and Auditing Theory, CAT                          Management System

                 Theory, MST                   Contingency Theory, CT
                 1.                 Security Policy Theory, SPT
                                             Security Policy Theory

                         Security Policy


                                                                                   Planning

                     Implementation                 Maintenance
                     Kabay, 1996               2000              2002   Flynn, 2001








                              f
                                  f
                                      f

                                     Risk Management Theory, RMT

                                             Risk Management Theory                                   Risk
                    Analysis                  Risk Evaluation                              Threats
                         Vulnerabilities                                                             Risk

                    Assessment                                    Information Security Requirement
   282   283   284   285   286   287   288   289   290   291   292