The Open Automation and Control Systems Journal

2013, 5 : 139-149
Published online 2013 November 29. DOI: 10.2174/1874444301305010139
Publisher ID: TOAUTOCJ-5-139

Fuzzy Comprehensive Risk Assessment Method Based on Consistent Matrix and Information Entropy

Peng Jianfen and Liu Heng
China Electronics Cyberspace Great Wall Applications Ltd., Beijing 100191, China.

ABSTRACT

To solve the following problems of information security risk assessment method: inconsistency of judgment matrix, and irrationality of expert weight, risk assessment method based on the consistent matrix and information entropy (RAMCI) is proposed, which uses the priority relationship matrix to establish consistent judgment matrix and information entropy to calculate the weight of multiple experts with an indicator score. This method was used in a case to assess the risk. The results show that: in comparison with previous assessment methods, RAMCI has the following advantages: consistency of judgment matrix not concerned; objectively reflects the statistical profile of individual risk factors. So RAMCI is a practical information system risk assessment method.

Keywords:

Fuzzy comprehensive risk assessment, Information entropy, Consistent matrix.