情报科学 ›› 2023, Vol. 41 ›› Issue (8): 147-154.

• 业务研究 • 上一篇    下一篇

数字中国背景下金融信息安全的威胁情报研究: 内在逻辑与态势感知应用

  

  • 出版日期:2023-08-01 发布日期:2023-09-19

  • Online:2023-08-01 Published:2023-09-19

摘要: 【 目的/意义】党的二十大突出强调了防范金融风险问题并将其作为健全国家安全体系的重要内容。在数 字中国的大背景下,随着我国金融信息化程度的不断提高,金融信息安全风险及其传染扩散效应凸显并引发关注。 【方法/过程】通过对全球金融信息风险现状的梳理和对国内外威胁情报在网络信息安全领域的应用对比分析,提 出了金融信息威胁情报的价值空间,分析了作用逻辑。五维解构了威胁情报并结合网络安全态势感知模型,构建 了基于威胁情报的金融信息安全态势感知应用框架。【结果/结论】威胁情报在网络信息安全领域具有清晰的作用 逻辑和较大的应用价值空间。将威胁情报体系应用于网络安全态势感知模型,能够有效弥补传统模式的不足,提 升金融信息安全的态势感知水平和威胁事件的事前阻断能力。【创新/局限】拓展情报理论在金融信息安全领域的 应用边界,为学习理解二十大精神,强化我国金融信息安全治理能力提供研究参考。

Abstract: 【 Purpose/significance】Twentieth Congress of the CPC highlighted the issue of financial risk prevention and made it an im⁃ portant element of a sound national security system. In the context of digital China, with the increasing degree of financial informatiza⁃ tion in China, the financial information security risks and their contagion diffusion effects are highlighted and cause concern.【 Method/ process】Through the combing of the current situation of global financial information risk and the comparative analysis of the applica⁃ tion of domestic and foreign threat intelligence in the field of network information security, the value space of financial information threat intelligence is proposed and the role logic is analyzed. The five-dimensional deconstruction of threat intelligence and combined with the network security situational awareness model, the framework of financial information security situational awareness applica⁃ tion based on threat intelligence is constructed.【 Result/conclusion】Threat intelligence has a clear role logic and a large application value space in the field of network information security. Applying the threat intelligence system to the network security situational awareness model can effectively make up for the shortcomings of the traditional model and improve the level of situational awareness of financial information security and the ability to block threat events beforehand.【 Innovation/limitation】Expand the application bound⁃ ary of intelligence theory in the field of financial information security, and provide research reference for learning and understanding the spirit of the Twentieth Congress of the CPC and strengthening the financial information security governance capability in China.