• 제목/요약/키워드: Management Information

검색결과 41,805건 처리시간 0.057초

의료기관 종별 웹 사이트 정보보안 관리 실태 연구 (A Study on Information Security Management of Hospital Web Sites)

  • 김종민;류황건
    • 보건의료산업학회지
    • /
    • 제9권2호
    • /
    • pp.23-32
    • /
    • 2015
  • In this paper, we evaluated web security vulnerability and privacy information management of hospital web sites which are registered at the Korea Hospital Association. Vulnerability Scanner (WVS) based on the OWASP Top 10 was used to evaluate the web security vulnerability of the web sites. And to evaluate the privacy information management, we used ten rules which were based on guidelines for protecting privacy information on web sites. From the results of the evaluation, we discovered tertiary hospitals had relatively excellent web security compared to other type of hospitals. But all the hospital types had not only high level vulnerabilities but also the other level of vulnerabilities. Additionally, 97% of the hospital web sites had a certain level of vulnerability, so a security inspection is needed to secure the web sites. We discovered a few SQL Injection and XSS vulnerabilities in the web sites of tertiary hospitals. However, these are very critical vulnerabilities, so all hospital types have to be inspected to protect their web sites against attacks from hacker. On the other hand, the inspection results of the tertiary hospitals for privacy information management had a better compliance rate than that of the other hospital types.

지방자치단체의 범용프로그램 도입 및 활용방안에 관한 연구 (A Study on the Introduction and Application of the Standardized Management Software for Local Government)

  • 홍상기;신동빈;안종욱
    • 대한공간정보학회지
    • /
    • 제12권3호
    • /
    • pp.3-12
    • /
    • 2004
  • 시설물관리시스템은 지자체에 도입된 보편적인 GIS활용체계라 할 수 있다. 지난 몇 년간 많은 지자체에서 시설물관리시스템을 개발하였는데 특히 상 하수도의 도로관리시스템 부분에 치중하였다. 여기에 도입된 시설물관리 범용프로그램의 개념은 지자체간의 개발업무에 있어 중복을 최소화하는 것이다. 최근 지자체에서는 분야별로 정보화의 한계를 인식하고 도시정보체계 구축으로 관심을 돌리고 있다. 따라서 본 연구에서는 지자체에서 도시정보체계를 구축할 수 있도록 지원하기 위한 범용프로그램의 활용가능성을 제시하고자 한다. 이렇게 함으로써 도시정보체계 구축에 있어 중복투자의 방지, 프로젝트 시간단축, 실패가능성의 최소화와 정보프로젝트의 활성화가 기대된다.

  • PDF

A Study of Indonesian Online Marketplace: Information Processing Theory Paradigm

  • TEOFILUS, Teofilus;SUTRISNO, Timotius F.C.W.;HONGDIYANTO, Charly;WANANDA, Veronica
    • 유통과학연구
    • /
    • 제18권8호
    • /
    • pp.75-87
    • /
    • 2020
  • Purpose: This study uses the protection motivation theory and information processing theory to discuss the high number of fraud phenomenon in Indonesia which causes worries to the internet users. The second problem is the large amount of information transparency in e-commerce which actually hinders the users in making decisions so it causes a negative behavior pattern, namely discontinue usage intention. Design/methodology: Therefore, this research hopes to provide insight to the online or e-commerce business community, especially for Tokopedia, to develop its business from understanding the factors influencing consumer attitude when shopping online. The sample are students from Universitas Indonesia, Institut Teknologi Bandung, Institut Pertanian Bogor, Universitas Gadjah Mada and Institut Teknologi Surabaya, with total 900 respondents. Result: The results of this research indicate that ubiquitous connectivity (UC) variable significantly affects variables such as the privacy concern (PC), information transparency (IT) and information overload (IO). PC and IO variables also significantly affect Discontinue Usage Intention (DUI). Conclusion: This study gives a new perspective that despite the phenomenon, the millennial generation especially are not entirely concerned about the privacy concern, however, this study clearly shows that the privacy issue in the digital word continues to be something that needs to be cared for.

Design and Implementation of Data Processing Middleware and Management System for IoT based Services

  • Lee, Yon-Sik;Mun, Young-Chae
    • 한국컴퓨터정보학회논문지
    • /
    • 제24권2호
    • /
    • pp.95-101
    • /
    • 2019
  • Sensor application systems for remote monitoring and control are required, such as the establishment of databases and IoT service servers, to process data being transmitted and received through radio communication modules, controllers and gateways. This paper designs and implements database server, IoT service server, data processing middleware and IoT management system for IoT based services based on the controllers, communication modules and gateway middleware platform developed. For this, we firstly define the specification of the data packet and control code for the information classification of the sensor application system, and also design and implement the database as a separate server for data protection and efficient management. In addition, we design and implement the IoT management system so that functions such as status information verification, control and modification of operating environment information of remote sensor application systems are carried out. The implemented system can lead to efficient operation and reduced management costs of sensor application systems through site status analysis, setting operational information, and remote control and management.

개인정보관리체계계(PIMS)를 이용한 클라우드컴퓨팅 개인정보 보안 개선 방안 연구 (Personal Information Management System (PIMS) improvement research using cloud computing security)

  • 정혜인;김성준
    • 디지털산업정보학회논문지
    • /
    • 제12권3호
    • /
    • pp.133-155
    • /
    • 2016
  • Recently, in the adoption of cloud computing are emerging as locations are key requirements of security and privacy, at home and abroad, several organizations recognize the importance of privacy in cloud computing environments and research-based transcription and systematic approach in progress have. The purpose of this study was to recognize the importance of privacy in the cloud computing environment based on personal information security methodology to the security of cloud computing, cloud computing, users must be verified, empirical research on the improvement plan. Therefore, for existing users of enhanced security in cloud computing security consisted framework of existing cloud computing environments. Personal information protection management system: This is important to strengthen security for existing users of cloud computing security through a variety of personal information security methodology and lead to positive word-of-mouth to create and foster the cloud industry ubiquitous expression, working environments.

A Fair-Exchange E-Payment Protocol For Digital Products With Customer Unlinkability

  • Yen, Yi-Chung;Wu, Tzong-Chen;Lo, Nai-Wei;Tsai, Kuo-Yu
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • 제6권11호
    • /
    • pp.2956-2979
    • /
    • 2012
  • Along with the development of Information Technology, online transactions through Internet have become more popular for the reasons of convenience and efficiency. In order to provide secure and reliable online transactions, an effective electronic payment protocol is crucial. In this paper, we propose a novel electronic payment protocol for digital product transactions with an offline arbiter to achieve fair exchange, automated dispute resolution, customer anonymity, and customer unlinkability. In our protocol a product token is adopted to eliminate the need of key management for digital product decryption in the offline arbiter. In addition, Elliptic Curve Cryptography (ECC)-based self-certified public key is utilized to further reduce computing overheads. According to our analysis, the efficiency of our protocol can be greatly increased in comparison with previous literatures.

국가 지식정보자원의 디지털화 관리를 위한 전략 (A Strategy for Management of Digitization on National Information and Knowledge Resources)

  • 서은경;김성혁;오경묵
    • 정보관리학회지
    • /
    • 제17권3호
    • /
    • pp.213-234
    • /
    • 2000
  • 인쇄매체의 패러다임이 디지털 패러다임으로 바뀌면서 지식과 정보를 국가적인 차원에서 관리하기 위한 국가적인 전략이 요구되고 있다. 본 연구는 전략에 필요한 정보, 지식 및 지식정보의 이론적 틀, 왜 국가가 이들 자원을 관리하여야 하는가에 대한 관리의 문제점 및 해결방안 그리고 이들을 관리하기 위한 전략으로서 자원의 선정 등을 매크로적인 측면에서 제시하였다.

  • PDF

자바카드 기반 USIM의 보안 요구사항에 관한 연구 (The Study on the Security Requirements of USIM based on Java Card)

  • 정윤선;정영준;신명섭;임선희;이옥연;임종인
    • 한국정보과학회:학술대회논문집
    • /
    • 한국정보과학회 2007년도 가을 학술발표논문집 Vol.34 No.2 (D)
    • /
    • pp.56-61
    • /
    • 2007
  • 3세대 이동통신 방식인 WCDMA가 상용화됨에 따라 국내에서도 GSM 방식의 SIM 카드의 역할을 하는 USIM(Universal Subscriber identity Module) 카드가 본격적으로 도입되었다. USIM 카드는 WCDMA 단말기에 필수적으로 장착되며, 기존의 SIM 카드의 기본적인 기능 이외에도 다양한 기능이 추가될 수 있다. 본 논문에서는 자바카드의 구조 및 보안적 특징, USIM의 보안 요구사항 및 자바카드를 위한 USIM 아키텍쳐에 대해 설명한 후에 USIM의 다양한 활용을 위한 보안 고려사항에 대하여 논의한다.

  • PDF

정보시스템 아웃소싱 위험요인 평가 프레임?의 개발: 비영리 조직을 중심으로 (Development of the Evaluation Framework for the Risk Management of Information Systems Outsourcing : Focusing on Nonprofit Organizations)

  • 김창수;백명기
    • 한국정보시스템학회지:정보시스템연구
    • /
    • 제13권1호
    • /
    • pp.39-57
    • /
    • 2004
  • As a result of the fast development of Information communication technology, the competitive advantage of companies and the service quality of nonprofit organizations has been largely changed. Corresponding to this kind of change, companies have tried to make production improvement, competitive strengthening, and organizational innovation. Meanwhile, the nonprofit organizations directed by the government are pursuing the service innovation from general administration area to the public service for civilians. In relation to this, risk management of the company's information systems outsourcing has largely been studied until now. However, the study of risk management for nonprofit organization information systems outsourcing has rarely been made. In this paper, to provide the theoretical base for further research, we have attempted to develop the evaluation framework for risk management of information systems outsourcing considering the characteristics of nonprofit organizations.

  • PDF

Design of School Management Information System Based on the Indonesian National Education Standard

  • Kornelis, Marsella;Ock, Young Seok
    • International Journal of Contents
    • /
    • 제10권2호
    • /
    • pp.67-73
    • /
    • 2014
  • With a population of around 237,424,363 in 33 provinces, Indonesia is one developing countries that needs an excellent School Management Information System (SMIS) to accomplish its educational mission. To reach the goal, it is necessary to know the rules, culture of school and related data prior to building the SMIS. This study is focused on the Indonesian National Education Standards. It is has nine standards that are described by the Regulation of Education Ministry. To manage the schools' organization, this paper aims to develop a SMIS based on the Indonesian National Education Standards by using ARIS(Architecture of Integrated Information System) to help schools run efficiently. The new system will be built using UML(Unified Modeling Language), this new system conforms to the education rules of the government. Finally, the conclusion and future research are described.