• Title/Summary/Keyword: 조직통제

Search Result 471, Processing Time 0.035 seconds

Delegation using Sub-Role in Role-based Access Control (역할기반 접근통제에서의 부분역할을 이용한 권한위임 기법)

  • 전진우;전준철;유기영
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2003.10a
    • /
    • pp.775-777
    • /
    • 2003
  • 역할기반 접근통제는 많은 조직에서 효과적으로 사용되고 있다. 역할기반 접근통제에서 권한은 역할과 관련이 되어 있고 사용자는 역할과 관련된 권한을 얻기 위해 역할의 일원이 되어진다. 역할기반 접근통제에서의 사용자 권한위임은 한 사용자가 인증 된 다른 사용자에게 자신의 권한을 위임하여 권한을 위임 한자신과 같은 역할의 일원이 되게 하는 것이다. 그러나 기존의 역할기반 접근통제 모델에서는 권한의 일부를 위임하는 것이 어려웠다. 본 논문에서는 역할을 위임을 위한 부분역할로 나누어 권한의 일부를 위임 가능하게 함으로써 권한 전체를 위임했을 때의 문제를 방지하고, 접근통제에서의 최소권한 원칙과 임무분리 원칙을 만족하게 하는 권한위임 방법을 제안하였다.

  • PDF

A study for Internal Accounting Control Based on Computerized Accounting Information System (전산화된 회계정보시스템의 내부회계통제의 운영방안에 관한 연구)

  • 손명철
    • Journal of the Korea Computer Industry Society
    • /
    • v.2 no.10
    • /
    • pp.1355-1364
    • /
    • 2001
  • Internal control comprises the plan of Organization and all of the coordinate methods and measure adopted within a business to safeguard its assets. check the accuracy and reliability of its accounting data, promote operation efficiency, and encourage adherence to prescribed managerial policies. Internal accounting control is classified into General Control and Application Control. Essential elements of internal accounting control as follows : 1. General Control $\circled1$ Organization and operation controls. $\circled2$ System development and Documentation controls. $\circled3$ Hardware controls. $\circled4$ Software and hardware Accessibility controls. $\circled5$ General systems security and protection 2. Application control $\circled1$Input control. $\circled2$ Processing control. $\circled3$ Output control. Internal accounting control can establish a total management information system by connecting with mana-gement control of a company, and enable decision makers to establish decision support system(DSS), is so vital today.

  • PDF

정보보안정책, 보안통제 및 사용자특성이 정보보안효과에 미치는 영향: 컴퓨터 바이러스를 중심으로

  • 김종기;전진환
    • Proceedings of the Korea Association of Information Systems Conference
    • /
    • 2005.12a
    • /
    • pp.67-85
    • /
    • 2005
  • 오늘날 정보화의 급진전에 따른 PC의 광범위한 보급과 네트워크의 확산은 컴퓨터 바이러 스와 관련된 역기능을 심각하게 형성하는 계기가 되었다. 더욱이 컴퓨터 바이러스 개발기술의 발전에 따라 신종 바이러스가 더욱 기술적으로 정교해지고, 다양한 변종이 출현함에 따라 바이러스 대응 소프트웨어를 설치하는 것만으로는 효과적으로 대처할 수 없다는 문제가 제 제기 되었다. 조작의 정보보안을 위해 전반적인 관리적 차원에서 바이러스를 효과적으로 통제할 수 있도록 여러 가지 요인들을 고려해야 한다. 이를 위해 조직의 정보자원의 관리 방향을 제시하고 있는 보안정책이 강조되어야 함은 물론이며, 전체적인 관점에서 정보시스템에 대한 보안을 강화하기 위하여 정보 기술에 대한 부적절한 활용을 통제하고, 사용자 측면에서 감염 확산의 차단 및 재발을 효과적으로 억제할 수 있어야 한다. 이에 따라 본 연구에서는 직접적인 컴퓨터 바이러스 통제를 위해 관리적 측면에서 요인들을 강조하고, 사용자의 시스템 관련 지식 및 인지적 특성 등의 개인적 특성을 반영하여 보안효과를 평가할 수 있도록 연구모형을 구성하였다. 구조방정식 모형에 의한 실증분석 결과에 의하면 조직내 보안정책이 바이러스 통제의 수준에 영향을 미치며, 사용자의 컴퓨터 바이러스 관련 보안인식을 향상시킬 수 있는 것으로 나타났다. 또한 보안통제는 보안효과에 긍정적인 영향을 미치지만 사용자의 정보보안 관련 특성은 보안효과에 영향을 미치지는 않는 것으로 분석되었다.

  • PDF

A Study on the Relationship between Industrial Espionage, Self-Control, and Organizational Commitment (산업기술유출과 자기통제력, 조직애착도의 관계에 관한 연구)

  • Hwang, Hyun-Dong;Lee, Chang-Moo
    • Korean Security Journal
    • /
    • no.47
    • /
    • pp.119-137
    • /
    • 2016
  • In a recent period, it becomes more and more important to keep the cutting-edge industrial technology secured. This is because competitive technology appears to be a cornerstone of national power. Although the industrial espionage must be an illegal behavior or a kind of white-collar crime, there has been few researches on industrial espionage from a criminological perspective. This study investigates the relationship between industrial espionage, self-control, and organizational commitment. The hypotheses of this study were found to be statistically significant. The hypothesis 1 that the high self-control reduces the possibility of industrial espionage was accepted, and the hypothesis 2 that the high organizational commitment reduces the possibility of industrial espionage was also accepted. This results showed that self-control and organizational commitment were the key factors to prevent industrial espionage, which eventually reinforces industrial security. This study used a convenient sampling, which might be the limits of this study. By using a convenient sampling, the result of the study could not depend on representative sample. Nonetheless, this study was trying to explore the relationship between industrial espionage, self-control, and organizational commitment which was not researched yet. The purpose of this study is to contribute to find out the criminological causes of industrial espionage and eventually to prevent it.

  • PDF

A Study on the Network Organization Design (네트워크 조직설계에 대한 연구)

  • Lee, Jong-Min
    • Korean Business Review
    • /
    • v.20 no.1
    • /
    • pp.19-32
    • /
    • 2007
  • As business environments rapidly changing and becoming more competitive, manager begin to realize the needs of the network organization structure reflecting the newly emerging internet environments. This paper, therefore, attempt to provide managers with a framework that can be used to design an effective network structure. The framework described here shows three important characteristics of network organizations: First, staffs need to be knowledge workers, rather than rule follower. Second, managers need to emphasize the empowerment, rather than exercising hierarchical power and control. In order for managers to support the design of network organizations they need to implement information systems that can integrate staffs, tasks, and information technologies.

  • PDF

A study on the Effects of Abusive Supervision on Subordinates' Turnover Intention and Organizational Commitment : Focusing on the Moderating Effect of Psychological Contract Violation and Self-control (상사의 비인격적 행위가 부하의 이직의도와 조직몰입에 미치는 영향에 관한 연구 -심리적 계약위반과 자기통제력의 조절효과를 중심으로-)

  • Park, Seong-Jin;Kim, Oh-Hyeon
    • Journal of the military operations research society of Korea
    • /
    • v.36 no.3
    • /
    • pp.113-134
    • /
    • 2010
  • The purpose of this study is to investigate the moderating effects of psychological contract violation and self-control on the relationship between abusive supervision and subordinates' work-related attitudes. Results show that abusive supervision was positively related to subordinates' turnover intention, whereas it was negatively related to their organizational commitment. Futhermore, it is surprising that the moderating effects of psychological contract violation and self-control showed an unexpected pattern. Implication of these results as well as strengths, limitations, and avenues for future research are discussed.

People Inside - 손한모 센터장(농림축산검역본부 AI예방통제센터)

  • Choe, In-Hwan
    • KOREAN POULTRY JOURNAL
    • /
    • v.47 no.6
    • /
    • pp.108-110
    • /
    • 2015
  • 지난 2월 26일 농림축산검역본부(이하 검역본부)는 조류인플루엔자 전담 조직 및 전문 인력 확보를 통해 국가 차원의 효율적이고 체계적인 시스템을 구축코자 AI예방통제센터를 신설하였다. 이에 AI 사전 예방 및 조기 종식을 목표로 신설된 AI예방통제센터 업무 설명회와 현판식이 지난 4월 30일 개최되었다. 고병원성 AI의 국내 발생이 장기화되어 검역본부 AI예방통제센터의 역할이 더욱 중요한 때이다. AI예방통제센터 초대 센터장으로 부임한 손한모 센터장을 만나 부임소감과 센터 운영계획을 들어보았다.

  • PDF

A Study on the Relationship between Smart Work Adoption Factors, User Innovation Resistance, and Turnover Intention: Focused on the Moderating Effect of Organizational Control (스마트워크 도입 요인과 사용자 혁신저항 및 이직의도 간의 관계에 대한 연구: 조직통제 조절효과를 중심으로)

  • Young Kwak;Minsoo Shin
    • Information Systems Review
    • /
    • v.23 no.4
    • /
    • pp.23-43
    • /
    • 2021
  • Due to the recent transition to a non-face-to-face society, many organizations are quickly adapting to foster a smart work environment. The introduction of smart work does not simply end with incorporating ICT systems or solutions into business models since fundamental factors such as forms of employment and work styles need to be in line with the progression of technological advances. However, previous studies regarding smart work focus on improvements in productivity and efficiency from a technology acceptance perspective. Therefore, there is a lack of discussion on innovation resistance from employees and management control when ICT systems are introduced into the workplace. This study empirically analyzes the moderating effects of the organizational control method for employees and innovation resistance within a smart work environment. Additionally, this study aims to identify the structural characteristics that employees resist from an innovation resistance perspective when organizational innovation occurs. The empirical analysis of this study suggests that when smart work such as ICT technology is introduced into the workplace the level of innovation resistance decreases when there is a high level of relative advantage and self-efficacy, whereas the level of innovation resistance increases when there is a high level of use complexity. Moreover, this study revealed that the level of innovation resistance increases when the employees' behaviors were controlled. The results of this study intend to contribute to improving business management by suggesting factors worth considering when incorporating smart work into work places through a thorough case analysis.

시스템 감사인의 LAN 통제 평가에 관한 연구

  • 고완석;노규성
    • Proceedings of the Korean Operations and Management Science Society Conference
    • /
    • 1995.04a
    • /
    • pp.143-152
    • /
    • 1995
  • 현대 감사에서 한정된 자원으로 통제 및 감사의 효과(목적)를 최대로 달성하기 위해 통제요소의 상대적인 중요도 파악 및 우선순위 설정이 필요해짐에 따라, 감사인의 판단에 기초한 정보시스템 내부통제 요소의 중요도 평가가 감사에 있어 매우 중요한 관건이 되고있다. 특히 조직에 LAN이 보급되면서 LAN의 환경적 특징으로 인해 통제시스템이 취약해 질 가능성과 이에 대한 보완 방안에 관한 연구가 시작되고 있는데, AHP(Analytic Hierarchy Process)모델을 응용한 Harper(1988)의 중요도 평가에 관한 연구는 시스템 감사인의 LAN 통제 평가의 효율화에 기여할 수 있다는 평가를 받고 있다. 그러나 Harper이 연구에서는 모델에 LAN을 고려한 시스템 감사 목적 (통제설치 기준)의 중요도를 고려하지 못하여 모델에서 결정된 통제요소의 중요도 순위가 부적절할 가능성을 갖는다. 만약 통제요소의 중요도가 부적절할 경우, 이는 LAN 통제 평가와 관련한 시스템 감사의 효율화 뿐 아니라 효과성을 해칠 가능성을 갖게된다. 본 연구는 이와같은 논의를 토대로 기존 연구가 갖는 문제점을 보완, LAN 통제요소의 적절할 평가 방안에 관한 연구를 진행할 것이다.

  • PDF

The Effect of Information Protection Control Activities on Organizational Effectiveness : Mediating Effects of Information Application (정보보호 통제활동이 조직유효성에 미치는 영향 : 정보활용의 조절효과를 중심으로)

  • Jeong, Gu-Heon;Jeong, Seung-Ryul
    • Journal of Intelligence and Information Systems
    • /
    • v.17 no.1
    • /
    • pp.71-90
    • /
    • 2011
  • This study was designed to empirically analyze the effect of control activities(physical, managerial and technical securities) of information protection on organizational effectiveness and the mediating effects of information application. The result was summarized as follows. First, the effect of control activities(physical, technical and managerial securities) of information protection on organizational effectiveness showed that the physical, technical and managerial security factors have a significant positive effect on the organizational effectiveness(p < .01). Second, the effect of control activities(physical, technical and managerial securities) of information protection on information application showed that the technical and managerial security factors have a significant positive effect on the information application(p < .01). Third, the explanatory power of models, which additionally put the information protection control activities(physical, technical and managerial securities) and the interaction variables of information application to verify how the information protection control activities( physical, technical and managerial security controls) affecting the organizational effectiveness are mediated by the information application, was 50.6%~4.1% additional increase. And the interaction factor(${\beta}$ = .148, p < .01) of physical security and information application, and interaction factor(${\beta}$ = .196, p < .01) of physical security and information application among additionally-put interaction variables, were statistically significant(p < .01), indicating the information application has mediated the relationship between physical security and managerial security factors of control activities, and organizational effectiveness. As for results stated above, it was proven that physical, technical and managerial factors as internal control activities for information protection are main mechanisms affecting the organizational effectiveness very significantly by information application. In information protection control activities, the more all physical, technical and managerial security factors were efficiently well performed, the higher information application, and the more information application was efficiently controlled and mediated, which it was proven that all these three factors are variables for useful information application. It suggested that they have acted as promotion mechanisms showing a very significant result on the internal customer satisfaction of employees, the efficiency of information management and the reduction of risk in the organizational effectiveness for information protection by the mediating or difficulty of proved information application.