摘要:Focusing on characteristics of information management in SME that most information security models assign the detection function to the operational process of enterprise, this paper proposes an information security management model for SMEs ---- the HPDRR (Honeypot Protection Detection Response Recovery) model. By means of empirical studies, this paper summarizes the scheme for executing, maintaining, and improving the information security management policy in SMEs in China.