• Title/Summary/Keyword: 정보화 생명주기

Search Result 10, Processing Time 0.029 seconds

A Study on the e-Government Interoperability Framework Based on IT life cycle and EA (정보화 생명주기 및 전사적아키텍처(EA) 기반의 전자정부 상호운용성 프레임워크 연구)

  • Kang, Dong-Seok;Shin, Shin-Ae;Jung, Seung-Ho;Choi, Young-Jin
    • The KIPS Transactions:PartD
    • /
    • v.16D no.2
    • /
    • pp.257-264
    • /
    • 2009
  • The purposes of e-Government are to connect government agencies without boundary, and to deliver better quality e-services to citizens. The frontier countries try to reach the e-Government goals using Government Interoperability Framework(GIF). Even though Korea also has interoperability regulations, that is obscure. So we have some limitations to take the e-Government interoperability advantages. This study analyzes the cases of advanced countries (EU, U.S., U.K., and Australia), and reviews Korea's regulations. After that, we suggest EA based Korean e-Government Interoperability Framework(K-GIF), that is to manage the interoperability from business to information technology over the whole IT life cycle.

정보보호인력의 분류체계에 대한 대한 연구

  • 김태성;전효정;이진희;이초희
    • Review of KIISC
    • /
    • v.13 no.3
    • /
    • pp.50-60
    • /
    • 2003
  • 정보통신이 국가(사회 활동의 주요한 기반이 됨에 따라, 해킹, 컴퓨터 바이러스 유포, 개인정보 및 프라이버시 침해 등 정보화의 역기능 현상도 급증하고 있다. 정보화의 역기능은 정부 및 공공기관, 기업, 개인 모두가 정보보호의 중요성을 인식하도록 하는 계기가 되었으며, 그 결과 정보보호산업이 활성화되었다. 그러나, 정보보호산업에 대한 갑작스러운 수요 증가는 적절한 전문인력 확보에 차질을 빚어, 현재 정보보호인력시장은 공급부족으로 인한 수급 불일치 현상을 보이고 있다. 인력은 산업발전의 가장 큰 원동력으로 작용한다. 따라서, 향후 지속적인 성장이 전망되고 있는 정보보호산업이 꾸준히 발전할 수 있기 위해서는 무엇보다도 정보보호인력의 확보가 뒷받침되어야 할 것이다. 정보보호 기술의 생명주기가 매우 짧고, 매우 역동적으로 변화하는 데다가 정보보호산업이 타산업과의 동태적인 상관관계 속에서 성장하는 산업이기 때문에 과연 정보보호인력이란 무엇인가라는 간단한 질문에 대한 해답조차도 아직까지 명확하게 제시되지 못하고 있어 정보보호인력 양성을 위한 정책수립 및 시행에 있어 정부, 기업 등 관련 기관 모두의 어려움을 가중시키고 있다. 본 논문에서는 정부 및 민간 부문에서 정보보호인력의 양성 및 공급 관련 의사결정의 토대가 될 정보보호인력의 분류체계(정의, 범위, 분류)에 대한 분석을 하고자 한다.

The Study on Project Management Methodology for Productivity Improvement of SI project - focus on CMMi and PMBOK - (SI 개발 프로젝트 생산성 향상을 위한 프로젝트 관리 방법론 구축에 관한 연구)

  • Lee, Don-Hee;Kim, Jong-Eun
    • 한국IT서비스학회:학술대회논문집
    • /
    • 2009.05a
    • /
    • pp.453-458
    • /
    • 2009
  • 정보화가 기업 경쟁력의 핵심 요소로 부각되고 있으며 기업 및 정부기관은 앞 다투어 정보화에 투자하고 있는 상황이다. 정보시스템 개발 프로젝트도 이제는 대형 프로젝트 수가 급증하고 있다. 최근 소프트웨어 CMMi 수준에 관한 인증 여부는 기업 경쟁력의 핵심적인 요인으로 그 중요성이 날로 강조되고 있다. 또한 PMI의 PMBOK는 프로젝트 관리의 바이블 격으로 업종 업태를 불문하고 광범위하게 적용되고 있는 상황이다. 프로젝트 관리자의 관점에서 볼 경우 CMMi 모델과 PMBOK 모델간의 중첩되는 부분, CMMi 프로세스를 실적용 시 관리영역에 대한 혼선 부분, 또한 PMBOK 상위지침의 구체성 미흡 부분에 대한 통합 및 조정이 필요하게 되었다. 현재 상용되는 개발방법론에는 관리적인 요소가 매우 미약하고, 국내에 아직까지 체계적으로 정립된 관리방법론이 없는 상황이다. 따라서, 본 논문에서는 프로젝트 관리자가 숙지해야 하는 프로젝트 관리영역, 프로젝트 관리단계, 제반 절차, 유관 정보시스템과의 연동(Interface) 등을 정보화 개발 프로젝트 생명주기(Life Cycle)에 맞춰 재구성 및 통합하여 프로젝트 관리자(Project Manager)에게 일관된 관점(Single Point of View)을 제시하여 프로젝트 생산성을 제고 하고자 한다.

  • PDF

A Study on Change Management in the Evolution and Maintenance of Business Applications (비즈니스 어플리케이션 운영관리 하(下)에서 변경관리에 관한 연구)

  • Jung, Seung Won;Lee, SeoukJoo
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2015.04a
    • /
    • pp.549-552
    • /
    • 2015
  • 급속한 기술환경의 변화와 정보화 사회의 도래에 따라 시스템의 구축 비용보다 더 많은 비용이 유지보수에 투입되고 있다. 소프트웨어의 생명주기 측면에서 40-90%의 큰 비중을 차지하는 유지보수를 효율적으로 관리하는 것은 매우 중요한 문제이다. 이에 본 연구에서는 비즈니스 어플리케이션의 운영관리에 관한 사례를 유지보수 유형에 따라 분석하고, 이를 바탕으로 변경 관리의 개선 방향을 제시하였다.

Research on Personal Information Safety Condition and Improvements in Welfare Center for the Disabled (장애인복지관 개인정보보호 실태와 개선 방안)

  • Kim, Sung-Jin;Kweon, Jae-Sook
    • The Journal of the Korea Contents Association
    • /
    • v.10 no.11
    • /
    • pp.262-274
    • /
    • 2010
  • In Welfare Center for the disabled, under the Government's information acceleration plan, the computer system has been developed starting from work standardization in 2001 but it has been emphasized only on the technical and customer convenience side leaving out preparation for the side effects of them. Therefore this article will seek the necessity of personal information protection, legal basis in the Welfare Center for the disabled. Additionally after analyzing current status for the personal security of Welfare Center for the disabled, establishing an alternative plan for personal security policy's way could be addressed. Increasing education for awareness stress of personal information security, and preparing institutional protection apparatus from applying life cycle of personal information would be an alternative plan for personal information protection for Welfare Center for the disabled. Also frequent monitoring of accessing personal information from the computerized system should be achieved. It is impossible to recover damage caused by leak of personal information although post actions are progressed. From this essay, awareness of personal information protection should be newly revised for both the Social Welfare Organization and the Disabled welfare center, and also technical, institutional strategy's action should be arranged.

How to Combine Secure Software Development Lifecycle into Common Criteria (CC에서의 소프트웨어 개발보안 활용에 대한 연구)

  • Park, Jinseok;Kang, Heesoo;Kim, Seungjoo
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.24 no.1
    • /
    • pp.171-182
    • /
    • 2014
  • Common Criteria is a scheme that minimize IT products's vulnerabilities in accordance with the evaluation assurance level. SSDLC(Secure Software Development Lifecycle) is a methodology that reduce the weakness that can be used to generate vulnerabilities of software development life cycle. However, Common Criteria does not consider certificated IT products's vulnerabilities after certificated it. So, it can make a problem the safety and reliability of IT products. In addition, the developer and the evaluator have the burden of duplicating evaluations of IT products that introduce into the government business due to satisfy both Common Criteria and SSDLC. Thus, we researched the relationship among the Common Criteria, the static code analysis tools, and the SSDLC. And then, we proposed how to combine SSDLC into Common Criteria.

Comparison and an evaluation of a component technology for a Web system development and application based on CBD (CBD 기반의 웹 시스템 개발 적응을 위한 컴포넌트 기술 비교 평가)

  • 나윤지
    • The Journal of the Korea Contents Association
    • /
    • v.2 no.4
    • /
    • pp.59-66
    • /
    • 2002
  • As for the software development, it is complicated, and size of software is growing larger. And contraction of a software development period is required acutely because it is short a period of software life cycle. Also, it becomes harder development and a maintenance because it is short a life cycle of developed software. According to this an effort is increased in order to reduce a development cost and time as using a component to have been implemented previously in development of software. A current component technology is developing into a very fast speed and is bringing a large change into development of a Web base system in addition to existing software development method. In this paper, we were handling a related technology for Web system development of a CBD base systematically and derived an issue to apply it to development of a Web system and presented an efficient practical use method of a component technology. First of all we looked into a component technology and a CBD methodology systematically and described a component technology in Web. Also, we proposed a method to increase development and efficiency of practical use of a Web system based on a component. The this study result can decrease a development cost of a Web system and a load of maintenance management through the re-use of a code.

  • PDF

On the Application for Minimum Server Cores in Public Sector (공공부문 도입서버의 최소코어수 적용에 관한 고찰)

  • Lee, Tae-Hoon;Ra, Jong-Hei
    • Journal of Digital Convergence
    • /
    • v.9 no.3
    • /
    • pp.213-223
    • /
    • 2011
  • Today, information resource management is key task in the data-centre as like as NCIA(National computing integration Agency of Korea). In IRM, the server's performance is one of the core elements, it must be importantly managed during whole of system life cycle. As first step of such management is in purchase phase, it is very important that the optimum specification is determined. The server's specification contains such as performance of core, criteria for performance verification, minimum cores, etc. There is constant controversy concerning the minimum cores. In this article, we present criteria for determination of the minimum cores that considered three aspects: (1) Costly aspect as TCO(Total Cost of Ownership, (2) Environmental aspect as Green IT (3) Technical aspect as RAS(Reliability, Availability, Serviceability) functionality. Finally, we propose scheme to ideally determinate the minimum cores.

A Study on The Preference Analysis of Personal Information Security Certification Systems: Focused on SMEs and SBs (개인정보보호 인증제도 선호도 분석에 관한 연구: 중소기업 및 소상공인을 중심으로)

  • Park, Kyeong-Tae;Kim, Sehun
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.24 no.5
    • /
    • pp.911-918
    • /
    • 2014
  • Over the past few years, security breaches have been consistently reported around the world. Especially, people's personal information are at risk of being breached as the firms gather and utilize the information for their marketing purposes. As an effort to revamp their data infrastructures, companies have rebuilt their system that almost every data, including the personal information, are stored within the digital database. However, this migration provides easier access to the database but it has also increased the system vulnerability. As the data can be easily exposed to the unauthorized personnel both intentionally and unintentionally, it is necessary for companies to establish a set of security protocol and operate the personal information protection system. There are two major certified security system in South Korea; PIMS from KISA and PIPL from NIA. This paper analyzes the preferences of SMEs and small business using conjoint attributes of PIMS and PIPL. The study shows that the business owners take post certification rewards as the most important factor. It also shows that the attributes that have the highest utility rates are the following; 1) KISA certification, 2) 79 points of protection counter measurements, 3) 28 items of life cycle, 3) 50 percent discount on certification fee, and 4) Reduced amount of fine for personal information leakage incident.

Relative Importance Analysis of Management Level Diagnosis for Consignee's Personal Information Protection (수탁사 개인정보 관리 수준 점검 항목의 상대적 중요도 분석)

  • Im, DongSung;Lee, Sang-Joon
    • Asia-pacific Journal of Multimedia Services Convergent with Art, Humanities, and Sociology
    • /
    • v.8 no.2
    • /
    • pp.1-11
    • /
    • 2018
  • Recently ICT, new technologies such as IoT, Cloud, and Artificial Intelligence are changing the information society explosively. But personal information leakage incidents of consignee's company are increasing more and more because of the expansion of consignment business and the latest threats such as Ransomware and APT. Therefore, in order to strengthen the security of consignee's company, this study derived the checklists through the analysis of the status such as the feature of consignment and the security standard management system and precedent research. It also analyzed laws related to consignment. Finally we found out the relative importance of checklists after it was applied to proposed AHP(Analytic Hierarchy Process) Model. Relative importance was ranked as establishment of an internal administration plan, privacy cryptography, life cycle, access authority management and so on. The purpose of this study is to reduce the risk of leakage of customer information and improve the level of personal information protection management of the consignee by deriving the check items required in handling personal information of consignee and demonstrating the model. If the inspection activities are performed considering the relative importance of the checklist items, the effectiveness of the input time and cost will be enhanced.