Abstract: In this paper, we study the issue of evaluating the security of an automated information processing system of a various class. For obtaining of such evaluation, an algorithm based a stochastic Markov model of information security is suggested. The algorithm also includes the collection and analysis of initial data using the threat and vulnerability data base of FSTEC Russia, and their subsequent expert evaluating. The algorithm proposed is realized as a software program.