• Title/Summary/Keyword: FedRAMP

Search Result 9, Processing Time 0.034 seconds

A Comparison Study between Korean Cloud Service Certification Systems and U.S. FedRAMP (한국의 클라우드 서비스 인증제도와 미국의 FedRAMP의 비교 연구)

  • Seo, Kwang-Kyu
    • Journal of Digital Convergence
    • /
    • v.10 no.11
    • /
    • pp.59-65
    • /
    • 2012
  • The evolution of cloud computing service over the recent years is potentially one of the major advances in information and communication technology. However, if cloud computing service is to achieve its potential, there needs to be a clear understanding of the various issues such as service security, performance and availability and so on, both from the perspectives of the providers and the consumers of the cloud service. As more and more information on individuals, companies and public sectors are placed in the cloud service, concerns are beginning to grow about just how safe and reliable an environment it is. In order to overcome these situations, the Korea cloud service certification system and U.S. FedRAMP were performed in each country. This paper aims at comparing and analyzing between Korean cloud service certification systems and U.S. FedRAMP and describing the difference between them. Eventually, we propose the improvement strategy of Korea cloud service certification systems based on the comparison results between them.

A Comparison Study between Cloud Service Assessment Programs and ISO/IEC 27001:2013 (클라우드 서비스 평가 프로그램과 ISO/IEC 27001:2013의 비교 연구)

  • Choi, Ju-Young;Choi, Eun-Jung;Kim, Myuhng-Joo
    • Journal of Digital Convergence
    • /
    • v.12 no.1
    • /
    • pp.405-414
    • /
    • 2014
  • It is very important to IT users that the Cloud service provides dynamic extension of IT resources and cost-saving. However, the reliability for Cloud service hinders utilizing Cloud service actively. Existing studies on assessment program for Cloud Service are executed by extracting information security assessment articles and adding features of cloud services by referencing ISO/IEC 27001:2005. This paper will review the recently released ISO/IEC 27001:2013 for the addition, reduction, and changing of articles for Controls and Control objectives. Comparative analysis for the Controls of ISO/IEC 27001:2013 with those of CSA CCMv.3, FedRAMP which is an assessment program for Cloud service will suggest Control Objects of Information Security Management System for related Cloud service. The suggestion of Controls will be an important reference index for the security policy of companies which manage the information security management system based on Cloud service.

Business Continuity and Data Backup in Cloud Computing Service and Architecture Study for Data Availability Zone (비즈니스 연속성을 위한 클라우드 컴퓨팅 서비스에서의 데이터 백업과 데이터 가용영역 아키텍쳐 연구)

  • Park, Young-ho;Park, Yongsuk
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.20 no.12
    • /
    • pp.2305-2309
    • /
    • 2016
  • Cloud Computing Service should support efficiency and stability. United States of America, for example, provides FedRAMP (Federal Risk and Authorization Management Program) accreditation to certify cloud computing service and hence growth of computing service industry is giving benefits of cost reduction and efficiency to companies. However, the use of computing service brings more risk than ever. Because cloud computing holds all the data of multiple companies, problems such as hacking bring out control loss of service and as a result total data of companies can be lost. Unfortunately, cloud computing certification programs do not have any good solutions for this data loss and companies may lose all the important data without any proper data backup. This paper studies such problems in terms of backup problem and provides Data Availability Zone solution for recovery and safe saving of data so that computing service can offer better efficiency and stability.

Strengthening Security on the Internal Cloud Service Certification (국내 클라우드서비스 인증에서 보안 강화방안 연구)

  • Lee, Gangshin
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.23 no.6
    • /
    • pp.1231-1238
    • /
    • 2013
  • In the background of rapidly increasing domestic cloud service demand, worries about security and privacy incidents can hinder the promotion of cloud service industry. Thus, it is crucial that the independent 3rd party assures the reliability for using the cloud service. This paper compares several external and internal cloud service certification cases, for example CSA certification, FedRAMP certification, KCSA certification, and concludes that insufficient security and privacy controls are prevailing. As a consequence, several enhanced countermeasures by using ISO/IEC 27017, KISA's ISMS considering manageability and expertise are proposed in the cloud service certification system.

Field Emission Stability of Carbon Nanotubes Grown by Thermal Chemical Vapor Deposition

  • Kim, B.K.;Kong, B.Y.;Seon, J.Y.;Lee, N.S.;Kim, H.J.;Han, I.T.;Choi, J.H.;Jung, J.E.;Kim, J.M.
    • 한국정보디스플레이학회:학술대회논문집
    • /
    • 2003.07a
    • /
    • pp.863-866
    • /
    • 2003
  • Multi-walled carbon nanotubes (CNTs) were synthesized on glass substrates in the different ramp-up heating ambient of vacuum, He, Ar, and $N_{2}$ by thermal chemical vapor deposition. CNTs with higher crystallinity were developed in the buffer gases with faster growth rates than in vacuum. Field emission characteristics were strongly related to the relative position of CNT emitters to the cathode electrodes. The areal-spread emission and instability were overcome by locating the emitters far away from the edges of cathode electrodes. The electrical conditioning of emitters improved their emission uniformity over a large area although it decreased the emission current. This study also discussed the long-term stability of CNT emitters.

  • PDF

PFC Bridge Converter for Voltage-controlled Adjustable-speed PMBLDCM Drive

  • Singh, Sanjeev;Singh, Bhim
    • Journal of Electrical Engineering and Technology
    • /
    • v.6 no.2
    • /
    • pp.215-225
    • /
    • 2011
  • In this paper, a buck DC-DC bridge converter is used as a power factor correction (PFC) converter for feeding a voltage source inverter (VSI) based permanent magnet brushless DC motor (PMBLDCM) drive. The front end of the PFC converter is a diode bridge rectifier (DBR) fed from single phase AC mains. The PMBLDCM is used to drive the compressor of an air conditioner through a three-phase voltage source inverter (VSI) fed from a variable voltage DC link. The speed of the air conditioner is controlled to conserve energy using a new concept of voltage control at a DC link proportional to the desired speed of the PMBLDC motor. Therefore, VSI operates only as an electronic commutator of the PMBLDCM. The current of the PMBLDCM is controlled by setting the reference voltage at the DC link as a ramp. The proposed PMBLDCM drive with voltage control-based PFC converter was designed and modeled. The performance is simulated in Matlab-Simulink environment for an air conditioner compressor load driven through a 3.75 kW, 1500 rpm PMBLDC motor. To validate the effectiveness of the proposed speed control scheme, the evaluation results demonstrate improved efficiency of the complete drive with the PFC feature in a wide range of speed and input AC voltage.

Implementation of a Vector Control System of CRPWM Inverter Fed Induction Motor (CRPWM 인버터로 구동되는 유도전동기의 벡터제어 시스템 구현)

  • 김종진;김홍근
    • The Proceedings of the Korean Institute of Illuminating and Electrical Installation Engineers
    • /
    • v.10 no.3
    • /
    • pp.55-63
    • /
    • 1996
  • In this paper, a vector control system is implemented to drive CRPWM inverter fed induction motor. The rotor flux is estimated using the rotor coordinates flux model and the stator coordinates ramp comparison controller is used as a current controller. The microcontroller 80C196 is used for the computation of the estimation of the rotor flux, the speed controller, the flux controller, the vector rotation, and the phase transformation The current controller is implemented using the analog circuit in order to reduce the burden of the microcontroller. For the proposed system, the digital simulation is performed to examine the feasibility and the superior characteristics of the current controller and the system transient response is verified through the experiment.

  • PDF

A study on the robot controller design using a reduced-order observer (축소차수 관측기를 이용한 로보트 제어기 설계에 관한 연구)

  • 김도식;김진걸
    • 제어로봇시스템학회:학술대회논문집
    • /
    • 1991.10a
    • /
    • pp.1-6
    • /
    • 1991
  • This paper is concerned with the design of a robust tracking controller using a state observer on a robotic manipulator under the disturbance. The controller is designed to follow a step or ramp reference input without steady state error in the presence of a disturbance and a system parameter variation. In most cases, since all the state vectors are not measured, unmeasurable state vectors must be estimated or reconstructed. A reduced order observer is proposed to estimate unmeasurable state vectors of the non-linear system. Some problems are caused by the Coulomb friction, the disturbance, and the spring effect of a link between the drive motor and the manipulator arm. The state variables, directly measured and estimated by the reduced order observer, are fed back to the controller. When the robot system exhibits the 'limit cycle, the feedback gains initially obtained by optimal control theory are changed. As a result, the limit cycle is eliminated by the new controller gains,

  • PDF

Cloud Computing Strategy Recommendations for Korean Public Organizations: Based on U.S. Federal Institutions' Cloud Computing Adoption Status and SDLC Initiative (한국의 공공기관 클라우드 컴퓨팅 도입 활성화 전략: 미국 연방 공공기관 클라우드 컴퓨팅 도입현황 시사점 및 시스템 개발 수명주기(SDLC) 프로세스 전략을 중심으로)

  • Kang, Sang-Baek Chris
    • The Journal of Society for e-Business Studies
    • /
    • v.20 no.4
    • /
    • pp.103-126
    • /
    • 2015
  • Compared to other countries, cloud computing in Korea is not popular especially in the government sector. One of the reasons for the current not-fully-blossomed situation is partly by early investment in huge government datacenters under Korea's e-government initiative; let alone, there was no strong control tower as well as no enforcing law and ordinances for driving such cloud computing initiative. However, in 2015 March 'Cloud Computing and Privacy Security Act' (hereinafter, Cloud Act) had been passed in the Parliament and from September 2015 Cloud Act was deployed in Korea. In U.S., FedRAMP (Federal Risk Assessment and Management Program) along with Obama Adminstration's 'Cloud First' strategy for U.S. federal institutions is the key momentum for federal cloud computing adoption. In 2015 January, U.S. Congressional Research Service (CRS) has published an extensive monitoring report for cloud computing in U.S. federal institutions. The CRS report which monitored U.S. government cloud computing implementation is indeed a good guideline for Korean government cloud computing services. For this reason, the purpose of the study is to (1) identify important aspects of the enacted Korean Cloud Act, (2) describe recent U.S. federal government cloud computing status, (3) suggest strategy and key strategy factors for facilitating cloud adoption in public organizations reflecting SDLC strategy, wherein.