Netinfo Security ›› 2026, Vol. 26 ›› Issue (1): 59-68.doi: 10.3969/j.issn.1671-1122.2026.01.005

Previous Articles     Next Articles

Research on Security Defense Strategy of Information System Based on Dynamic Security Management Model

WU Yue1, ZHANG Yawen2, CHENG Xiangran1,3()   

  1. 1. School of Cryptographic Engineering, Cyberspace Force Information Engineering University, Zhengzhou 450001, China
    2. Unit 92330 of PLA, Qingdao 266100, China
    3. Cyberspace International Governance Research Base, Fudan University, Shanghai 200433, China
  • Received:2025-03-30 Online:2026-01-10 Published:2026-02-13

Abstract:

Aiming at the limitation of static security management mode in dealing with dynamic security management scenarios, considering the influence of offensive and defensive confrontation behavior on strategy selection, this paper put forward a security defense strategy selection method of information system based on dynamic security management mode. Combining belief theory, a belief random game model was constructed to effectively simulate the belief state and the attack and defense process of information systems in the face of different security threats. By analyzing the game relationship between them, the security state of the system was evaluated, and the defense costs and benefits of managers in the attack and defense state were calculated, as well as the impact on the success rate of attacks, so as to the optimal defense strategy. Taking the real classified information system as the research object, this paper demonstrated the effectiveness of the experiment from three aspects: attack success rate, defense cost and defense benefit, which provides scientific basis and improvement suggestions for the security management of information system.

Key words: information system security, dynamic management model, refined Bayesian, belief theory

CLC Number: