在数智时代,区域的网络安全建设应当回归本质,中国应采用能力思维,以实战为目标,从产品主导转向能力主导的安全体系持续性建设。与美国、欧盟等发达国家相比,中国尚缺少一个全盘考虑的、可作为各区域统一标准的网络安全能力成熟度评价体系,而这个评价体系对于一个幅员辽阔、区域数字化和网络安全发展不均衡的大国至关重要。这个评价体系不仅能够推动各区域按照统一的标准和方法高效、有效地建立网络安全能力,而且能够促进区域在安全数据、安全情报、安全人才、安全事件响应等方面的协同,实现国家层面的信息同步、统一调度、分守合战。为填补这个空缺,大数据协同安全技术国家工程实验室在借鉴国内外相关研究经验的基础上,提出了旨在提升我国区域网络安全能力的成熟度模型和评价方法。
<<In the era of digital intelligence,regional network security construction should return to its essence. China should adopt capability thinking,and take actual combat as the goal,and shift from product-led to capability-led continuous construction of a security system. Compared with the United States and the European Union,our country still lacks a comprehensive network security capability maturity evaluation system that can be used as a unified standard for various regions. This is essential for a large country with a vast area,regional digitalization and network security developed unevenly. This evaluation system can not only promote the efficient and effective establishment of cybersecurity capabilities in various regions in accordance with unified standards and methods,but also promote regional collaboration in security data,security intelligence,security talents,security incident response,etc.,and achieve national-level information synchronization,unified scheduling,guard each other and fight together. In order to fill this vacancy,the National Engineering Laboratory for Big Data Collaborative Security Technology referred to relevant domestic and foreign research experience and proposed an evaluation model aimed at improving regional network security capabilities.
<<