• Title/Summary/Keyword: 개인정보관리체계

Search Result 372, Processing Time 0.029 seconds

FAIR-Based BIA for Ransomware Attacks in Financial Industry (금융 산업에서 발생하는 랜섬웨어 공격에 대한 FAIR 기반의 손실 측정 모델 분석)

  • Yoon, Hyun-sik;Song, Kyung-hwan;Lee, Kyung-Ho
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.27 no.4
    • /
    • pp.873-883
    • /
    • 2017
  • As Ransomware spreads, the target of the attack shifted from a single personal to organizations which lead attackers to be more intelligent and systematic. Thus, Ransomware's threats to domestic infrastructure, including the financial industry, have grown to a level that cannot be ignored. As a measure against these security issues, organizations use ISMS, which is an information protection management system. However, it is difficult for management to make decisions on the loss done by the security issues since amount of the damage done can not be calculated with just ISMS. In this paper, through FAIR-based loss measurement model based on scenario's to identify the extent of damage and calculate the reasonable damages which has been considered to be the problem of the ISMS, we identified losses and risks of Ransomeware on the financial industry and method to reduce the loss by applying the current ISMS and ISO 27001 control items rather than modifying the ISMS.

Developing Standard Transmission System for Radiology Reporting Including Key Images (Key Image를 포함한 방사선과 판독결과지 표준전송시스템 개발)

  • Kim, Seon-Chil
    • Journal of radiological science and technology
    • /
    • v.30 no.1
    • /
    • pp.47-51
    • /
    • 2007
  • Development of hospital information system and Picture Archiving Communication System is not new in the medical field, and the development of internet and information technology are also universal. In the course of such development, however, it is hard to share medical information without a refined standard format. Especially in the department of radiology, the role of PACS has become very important in interchanging information with other disparate hospital information systems. A specific system needs to be developed that radiological reports are archived into a database efficiently. This includes sharing of medical images. A model is suggested in this study in which an internal system is developed where radiologists store necessary images and transmit them in the standard international clinical format, Clinical Document Architecture, and share the information with hospitals. CDA document generator was made to generate a new file format and separate the existing storage system from the new system. This was to ensure the access to required data in XML documents. The model presented in this study added a process where crucial images in reading are inserted in the CDA radiological report generator. Therefore, this study suggests a storage and transmission model for CDA documents, which is different from the existing DICOM SR. Radiological reports could be better shared, when the application function for inserting images and the analysis of standard clinical terms are completed.

  • PDF

Study on the Femtocell Vulnerability Analysis Using Threat Modeling (위협 모델링 기법을 이용한 펨토셀 취약점 분석에 대한 연구)

  • Kim, Jae-ki;Shin, Jeong-Hoon;Kim, Seung-joo
    • KIPS Transactions on Computer and Communication Systems
    • /
    • v.5 no.8
    • /
    • pp.197-210
    • /
    • 2016
  • Lately smartphone uasage is increasing and many Internet of Things (IoT) devices support wireless communications. Accordingly, small base stations which called femtocells are supplied to prevent saturation of existing base stations. However, unlike the original purpose of the femtocell with the advanced hacking technologies, Vulnerability such as gaining the administrator authority was discovered and this can cause serious problems such as the leakage of personal information of femtocell user. Therefore, identify security threats that may occur in the femtocell and it is necessary to ways for systematic vulnerability analysis. In this paper, We analyzed the security threats that can be generated in the femtocell and constructed a checklist for vulnerability analysis using the Threat Modeling method. Then, using the constructed checklist provides a scheme that can improve the safety of the femto cell through the actual analysis and taken the results of the femtocell vulnerabilities analysis.

Comparative Study on the Personal Assistance System for Persons with Disabilities in South Korea and Japan -Focusing on Self-Determination of People with Disabilities - (장애인활동 지원제도에 관한 한·일 비교 -장애인의 자기결정권 보장을 중심으로-)

  • Lee, Mi Jeong
    • 재활복지
    • /
    • v.17 no.4
    • /
    • pp.1-26
    • /
    • 2013
  • As the social development progress, social welfare policy for people with disabilities also advance to meet rights of people with disabilities. The personal assistance service(PAS) is the primary service system for persons with disabilities based on guaranteeing the self-determination. The purpose of this study was to compare the personal assistance service system between Japan and Korea to propose improvement plan for Korean system. The comparison of two countries was based on current situation analysis of PAS. The analysis on eligibility criteria, information referral, amount and type of services and service provider, appealing process and service fee deductible etc. The result showed that PAS in Korea is served according to administration convenience than personal need based. Korean PAS policies are limited to particular service amount and type of needed services to satisfy personal PAS need. Whereas, Japan PAS system is served on the philosophy of independent living paradigm and therefore, PAS is provided on personal service needs. The service emphasis is on self-determination and rights on service selection for persons with disabilities. The recommendation for improvement of PAS in Korea are as followed. First, PAS should served under independent living paradigm. Paradigm based service is important because it effects the main theme of PAS; the self determination and rights of service selection. Second, reconstruction of PAS system is needed. As it showed on analysis, eligibility criteria, information referral, amount and type of services and service provider, appealing process and service fee deductible need to be supplemented. Last, to better serve PAS, case management method should be apply. Case management would contribute to settlement of PAS system in Korea. Thru case management, participation opportunities of people with disabilities must be provided during the selection of service quantity and type of PAS.

A Case Study of Successful Strategy for Self-Directed Learning Center of Educational Service Franchise - Focusing on the Case of Learning Center of Daekyo Noonnoppi - (교육 서비스 프랜차이즈의 자기주도 학습관 사업화 사례연구 - 대교 눈높이 러닝센터 사례를 중심으로 -)

  • Yoo, Dong-Keun;Hong, Jong-Pil;Hwang, Jae-Kwang
    • The Korean Journal of Franchise Management
    • /
    • v.5 no.1
    • /
    • pp.49-64
    • /
    • 2014
  • The purpose of this work is to analyze successful business strategy of Daekyo Noonnoppi. Daekyo Noonnoppi, a franchise company of educational service, activated education business by establishing new way of providing education opportunity: self-directed learning center. They introduced not only the concept of learning center but also sustainable business strategies, which leads to remarkable success in the education business field. Daekyo Noonnoppi deployed three managerial concepts for study achievement: goal management, study management, and environment management. This Franchise company has three advantages of its success: Goal, Study and environment management: First, the goal management helps students to develop self-directed attitudes by making(appropriate) atmosphere which is able to build study goal and plan. In addition, this company provides information to their students to searches ways of study through the test reflecting their tendency. Furthermore, this company offers a variety of events for motivating study. Second, study management is helpful for students to develop holistic fundamental knowledge through its textbooks of this company and provides solutions and time management for study through 1 on 1 study advice. Third, environment management is used to making atmosphere to develop self-directed learning way for its students and provides spaces for students equipped with multimedia systems and cyber learning infrastructures.

A Study on the Components of Web-Based Reading Education System (독서교육지원시스템의 구성요소 설정에 관한 연구)

  • Byun, Woo-Yeoul
    • Journal of Korean Library and Information Science Society
    • /
    • v.41 no.1
    • /
    • pp.295-318
    • /
    • 2010
  • Recently a reading education system has been developed to manage the accumulated reading activities and past records of individuals under the web environment using computers. And the reading education system, where we can have comprehensive reading education, has been developed and been applied to schools. The reading records in the reading education system can contribute to the improvement of reading activities and reading comprehension, the extension of thinking ability, and the cultivation of insight and character of the readers. The system will provide basic data for reading education for the teachers. The reading education system will accumulate the reading records of individuals. This system is not restricted by time and space. Also the system can support the reading education of children and students effectively. The menu of the reading education system is composed of a test of reading level, reading materials, activities after reading, reading certification, reading record management and instruction of teachers.

  • PDF

A Study on Partnerships in the Development of Parks in UK (영국(英國) 공원개발에 있어서의 파트너십에 관한 연구)

  • Kim, Yun-Geum;Roe, Maggie
    • Journal of the Korean Institute of Landscape Architecture
    • /
    • v.35 no.2 s.121
    • /
    • pp.1-12
    • /
    • 2007
  • 근래 한국에서도 대표적 공공공간인 공원의 조성 및 관리와 관련하여 파트너십에 대한 관심이 일고 있다. 주민들이 만들어가는 공원, 다양한 힘의 역학구조 속에서 공공성 유지, 지속 가능한 사회 구현에 도움이 될 것이라는 전망 때문이다. 이에 본 연구에서는 추후 한국에서의 실천과 제도정비에 도움이 될 수 있도록, 영국에서는 어떻게 정책적으로 파트너쉽을 유도하는지 그리고 커뮤니티는 이를 어떻게 수용하여 자신들의 사례를 만들어 가는가를 살펴보았다. 사례연구에 있어서는 질적 연구방법을 택했으며, 분석보다는 사례가 갖는 내러티브(narratives)를 다층적으로 서술하는데 초점을 두었다. 이것은 거대 내러티브가 사라지고 있는 현대 사회에서 일반적 원칙보다는 개별 사례의 구체성을 밝히는 것이 보다 중요하다는 일부 사회학 연구자들의 견해를 수용한 것이다. 더욱이, 주민참여 관련 사례는 지역특성과 주민의 영향을 많이 받기 때문에 이러한 연구방법이 유용할 것이다. 더불어, 이러한 방식은 자못 추상적 이해에 그칠 외국 사례를 보다 구체적으로 이해하는데 적합할 것이다. 연구결과에 있어, 먼저 영국에서는 지방의제21(LA21)이 지방정부의 서비스에 대한 근본적 태도와 체계를 바꾸는데 기여했다는 것을 알 수 있었다. 일례로, 뉴캐슬(Newcastle upon Tyne)시는 직접 서비스를 제공하기 보다는 주민들의 참여를 촉진하고 도와주는 방향으로 역할을 전환하고 있었다. 그리고 다양한 자금지원체계는 직접적으로 파트너십을 독려하고 있었다. 영국 뉴캐슬(Newcastle upon Tyne) 웨이브리 파크(Waverley Park) 사례를 살펴본 바에 따르면, 파트너십에 대한 지방정부의 태도가 성공적 파트너십에 있어 중요한 요소임을 확인할 수 있었다. 이 사례에서는 프렌즈그룹 이외, 커뮤니티 외부의 비영리 단체가 참여하지 않았는데, 이는 지방정부가 적극적으로 주민들의 참여를 촉구하고 도왔기 때문이다. 이외, 커뮤니티의 구성원과 공무원들의 개인적 역할도 중요하다는 것을 알 수 있었다. 중앙정부는 단지 자금뿐만이 아니라 다양한 사례에서 축적한 정보를 커뮤니티에 지원하고 전 과정을 모니터링 하고 있었는데, 간접적 참여라고 할 수 있다. 앞에서 언급했듯이, 본 연구는 영국에서의 파트너십과 관련된 제도, 그리고 제도가 구체적 현실에서 작동되면서 나타나는 특수성을 살펴보는 데 주력했다. 그런데 사례 연구에서 발견한 특수성을 한국에서의 시사점으로 명시하는 것은 한계가 있을 수 있다. 그래서 시사점은, 제도적 차원에서 한국과 영국을 비교하여 간략하게 제시했다. 첫째, 지방의제 21의 수용 방식이다. 한국의 지방정부 또한 지방의제 21을 실천하기 위해 협의회 등을 설치하였지만 행정 시스템을 전반적으로 변화시키고 있는 영국과는 차이점이 있다. 둘째, 공원과 녹지에 대한 지원금이 제공될 때, 지역주민의 동의를 요구하는 것은 커뮤니티의 참여를 독려하고 주인의식을 갖도록 하는데 효과적이라는 것도 시사점이 될 수 있다. 한국에서도 녹색복권 등 세원 이외의 자금이 공원 및 녹지 공간에 투입되고 있으나 주민들이 직접 이를 이용하도록 되어 있지는 않다. 즉, 커뮤니티의 참여와 관련되어 쓰이고 있지는 않다. 세 번째는, 커뮤니티와 공원과의 관계로 공원 설계와 관리에 있어서 영국에서는 커뮤니티가 직접 고객(client)으로서 역할을 하고 있었다. 한국에서도 계획 및 설계 과정에 주민을 참여시키는 경우가 있으나 의견청취 정도에 머물고 있고, 몇몇 시민단체를 중심으로 시민들이 직접 공원 관리에 참여하는 경우도 있으나 운동(movement)차원에 머물고 있을 뿐 이를 위한 제도적, 법적 토대가 구축되어 있지는 않다.

A study on Establishment and Management of the CCTV in Operating Room (수술실 CCTV 설치 및 운영에 대한 고찰)

  • Kim, Minji
    • The Korean Society of Law and Medicine
    • /
    • v.20 no.1
    • /
    • pp.109-132
    • /
    • 2019
  • Recently, medical accidents related to surgical procedures have increased. In addition, the media reported that some of these accidents were involved in health crimes. Patient-advocate groups have called for mandatory establishment and management of CCTV in operating rooms. There is a lot of discussion among the interested parties, so it is necessary to review the relevant laws and regulations. The purpose of this study is to identify the characteristics of CCTV in operating rooms and to review legislations related to establishment and management of the CCTV in operating rooms. Medical institutions use CCTV for management of facilities and patient safety and install it in operating rooms optionally. The Constitution guarantees the privacy and the privacy of correspondence of every citizen, but it can be limited by the law for public welfare. Currently, however, there is no existing law about establishment and management of the CCTV in operating rooms and it can be defect of legal system. Under the current legislations, it is likely that the Self-determination can be violated due to the characteristic of healthcare provider when CCTV is mandatorily installed in operating room. In addition, the regulations on access and leakage of confidential information known by operator are insufficient. So that, the safety of the visual data might be threatened. Furthermore, unless the period and the place of storage of the visual data are clearly defined, it is highly unlikely to meet the original purpose of patient safety and prevention of medical accidents. This study is meaningful as there is few previous study on this topic although the need for legal review about this is growing and several bills are being proposed. It is expected that the results of this study can be utilized as basic data for enactment or amendment of the laws and regulations about establishment and management of CCTV in operating rooms.

A Study on Measures for Preventing Credit Card Fraud (신용카드 부정사용 방지 방안에 관한 연구)

  • Jeong, Gi Seog
    • Convergence Security Journal
    • /
    • v.16 no.5
    • /
    • pp.33-40
    • /
    • 2016
  • Credit card is means of payment used like cash in terms of function and its users have increased consistently. With development of Internet and electronic commerce a role as payment method of credit card has been growing. But as the risk which results from centralized information and online increases, credit card fraud is also growing. Card theft and loss are decreasing due to countermeasure of card companies and financial supervisory authorities, while card forge and identity theft are increasing. Recently because of frequent personal information leakage and deregulation of financial security following easy-to-use payment enforcement, customer's anxiety about card fraud is growing. And the increase of card fraud lowers trust on credit system as well as causes social costs. In this paper, the security problems of card operating system are addressed in depth and the measures such as immediate switch to IC card terminals, introduction of new security technology, supervision reinforcement of the authorities are proposed.

The development of a mentoring program assisting freshmen belonging to the early childhood education in three year college to adapt to their major (3년제 유아교육과 신입생의 학과 적응을 위한 멘토링 프로그램 개발)

  • Suh, Hye Jeong;Won, Kye Son;Lim, Jin Hyung
    • Korean Journal of Childcare and Education
    • /
    • v.6 no.1
    • /
    • pp.201-230
    • /
    • 2010
  • The purpose of this study is to develop a mentoring program to assist freshmen who are part of the early childhood education in three year college in order to help them adjust to the major. Focus group interviews were conducted to find the difficulties that freshmen have experienced in adapting to their major. Afterward, the data was collected through brainstorming and questionnaires to find the solutions to their problems. The results showed that the troubles freshmen experienced were grouped into intrapersonal, interpersonal, and support system problems. In order to help these freshmen, it is needed to reduce their difficulties and to offer an informational guide which consist of the contents to adapt them to their college life. The mentoring program for freshmen of the early childhood education In three year college have consisted of the guides helping the troubles of adaptation to their major and the information needed to freshmen. The program has 8 sessions and it's contents were categorized into a time management, an academic activity, a social relationship development, a career and employment preparation and an extracurricular activity.