• Title/Summary/Keyword: Personal certification

Search Result 149, Processing Time 0.02 seconds

Implementation of Personal Certification Using i-PIN Service (i-PIN 서비스를 활용한 인증 서비스 구현)

  • Kim, Hyun-Joo;Shin, In-Chul;Lee, Soo-Jung
    • Journal of the Korea Society of Computer and Information
    • /
    • v.17 no.7
    • /
    • pp.117-128
    • /
    • 2012
  • Recently IT infrastructure plays a central role in the base of the society. However, use of personal registration number on internet sites has become a major factor increasing danger of leaking of personal information. Currently, the government is recommending various information protection services in order to prevent the collection of personal registration numbers and leaking of personal information on the internet. Among them, i-PIN service is the one recommended for minimal use of personal registration numbers on the internet. Although i-PIN can be used as a way to substitute personal registration numbers on the internet, there are certain limitations in using i-PIN as the only key to recognize individuals. This study proposes organization of web system in which self certification can be conducted using i-PIN as a tool for personal certification. Also its usability and stability have been verified through performance test when i-PIN service is linked with web service and used as personal certificate. But i-PIN service is unavailable if obstacles occur in providers of i-PIN self certification. To settle this inconvenience, the study also proposes how to cope with such obstacles.

A Case study f i-PIN Service for Information Security (보안성 강화를 위한 i-PIN 서비스 적용 사례 연구)

  • Kim, Hyunjoo;Lee, Soojong
    • Journal of Software Engineering Society
    • /
    • v.25 no.1
    • /
    • pp.19-28
    • /
    • 2012
  • Personal registration number has been used as a means of personal identification on existing internet. However, its use on internet sites has become a major factor increasing danger of leaking of personal information. Presently, the government recommends i-PIN to minimize the collection of personal registration numbers and leaking of personal information on internet. Original purpose of i-PIN is to recognize persons by its virtual number of 13 digits instead of using personal registration number on internet websites. These days, i-PIN continues to be used increasingly as a form of certification. This study seeks to explore software service methodology of using i-PIN as a form of certification on internet websites and examples in which its other forms of self certification are used than existing i-PIN services.

  • PDF

Effective Management of Personal Information & Information Security Management System(ISMS-P) Authentication systems (정보보호 및 개인정보보호 관리체계(ISMS-P) 인증제도의 효과적인 운영방안)

  • Hong, Sung Wook;Park, Jae-Pyo
    • Journal of the Korea Academia-Industrial cooperation Society
    • /
    • v.21 no.1
    • /
    • pp.634-640
    • /
    • 2020
  • The information security management system (ISMS) and the personal information management system (PIMS) have been integrated into a personal information & information security management system (ISMS-P) certification scheme in response to requests to reduce the time and cost to prepare certification schemes. Integration of the certification system has made it possible for the system operator to gain the advantage of easy management of the ISMS-P certification system, and the certification target organization can enjoy the advantage of easy acquisition and maintenance of certification. However, ambiguity in the application criteria of the target organization, and ambiguity in the certification criteria control items require the target organization to operate an excessive management system, and the legal basis to be applied to the certification target organization is ambiguous. In order to improve these problems, this paper uses case studies to identify the types of certification bodies that apply the certification criteria, and to change the control items applied during certification audits based on the types of certification bodies. Institutions that wish to obtain only ISMS certification have proposed three solutions, excluding controls covered by the ISMS-P. This paper suggests ways to operate an efficient certification system, and can be used as a basis for improving problems in the ISMS-P certification system.

A Linkage Analysis of ISMS-P and GDPR; Focused on Personal Information Protection (ISMS-P와 GDPR의 개인정보보호 부문 연계 분석)

  • Park, Minjung;Yu, Jieun;Chai, Sangmi
    • Journal of Information Technology Services
    • /
    • v.18 no.2
    • /
    • pp.55-73
    • /
    • 2019
  • The importance of the personal information has been increased, there have been a lot of efforts to establish a new policy, certification or law for administrating personal information more effectively and safely. Korean government has operated ISMS and PIMS certification system to assess whether an organization has established and managed appropriate information security system or not. However, it has been addressed the needs for revising and modifying of PIMS and ISMS. It is evaluated there are a few overlapped criteria to assess information management system in both ISMS and PIMS. ISMS-P certification, combining with ISMS and PIMS, is, finally, suggested, in the recent. GDPR is established having an aim of primarily to give control to individuals over their personal data and to simplify the regulatory environment for international business by unifying the regulation within the EU. This study compares GDPR and ISMS-P, focusing on "personal information". It can be expected to contribute as followings. This study can be a criterion for self-evaluation of possibility to violate of GDPR of a firm in preparation for ISMS-P. Second, this study also aims to increase the understanding of the role of ISMS-P and GDPR, among various certifications with the purpose of assessment of the information security management system, by reducing the costs required to obtain the unnecessary certification and alleviating the burden. Third, it contributes to diffusion of ISMS-P newly implemented in Korea.

Analysis of Effects of Lightning on PAV Using Computational Simulation and a Proposal to Establish Certification Guidance (전산 시뮬레이션을 통한 PAV 낙뢰 영향성 분석 및 인증기술에 관한 연구)

  • Park, Se-Woong;Kim, Yun-Gon;Kang, Yong-Seong;Myong, Rho-Shin
    • Journal of Aerospace System Engineering
    • /
    • v.13 no.6
    • /
    • pp.60-69
    • /
    • 2019
  • Companies around the world are actively developing Personal Air Vehicle (PAV) to solve the serious social problem of traffic jams. Airworthiness certification for PAV is required, since it is a manned vehicle. As with aircraft, the critical threat to the safe operation of PAV is lightning strike with strong thermal load and magnetic fields. Lightning certification issue also remains important for PAV, since there are still insufficient development of PAV-related lightning certification technologies, guidelines, and requirements. In this study, the SAE Aerospace Recommended Practice (ARP), an international standard certification guideline recognized by the Federal Aviation Administration (FAA), was analyzed. In addition, the guideline of lightning certification was applied to a PAV. The impact of lightning on PAV was also analyzed through computational software. Finally, the basis for the establishment of the PAV lightning certification guidance was presented.

A Study of Certification of Lightning Indirect Effects on Cable Harness in Personal Air Vehicles (PAV 케이블 하네스에 대한 낙뢰 간접 영향성 인증 기법에 관한 연구)

  • Jo, Jae-Hyeon;Kim, Yun-Gon;Park, Se-Woong;Myong, Rho-Shin
    • Journal of the Korean Society for Aeronautical & Space Sciences
    • /
    • v.49 no.3
    • /
    • pp.251-262
    • /
    • 2021
  • The airworthiness certification of lightning indirect effects becomes an important issue in personal air vehicles (PAVs), which are being actively developed around the world. PAVs are very vulnerable to lightning strikes, because of miniaturization, use of the electric engines, composite materials, and application of unmanned navigation systems. In this study, we first examined various steps of certifications for lightning indirect effects shown in AC 20 136B issued by the Federal Aviation Administration (FAA). We then applied certification guidelines for equipment transient design level listed in RTCA DO 160G Section 22 to PAVs and investigated lightning transient environments inside the PAVs. We also analyzed the aircraft level tests specified in SAE ARP 5416A by using electromagnetic computational analysis software EMA3D. Finally, we analyzed the actual transient level for PAVs and derived the data necessary for conformity certification.

A Study on the Health Information Management Practice Program Model for EMR Certification System Education -Focus on Patient Information Management- (EMR 인증제 교육을 위한 보건의료정보관리 실습 프로그램 모델 연구 -환자정보관리 중심-)

  • Choi, Joon-Young
    • Journal of the Health Care and Life Science
    • /
    • v.9 no.1
    • /
    • pp.1-9
    • /
    • 2021
  • In this study, a model in which certification standards were added to the health information management practice program was studied and presented in order to understand the EMR certification standards implemented by the Korea Health and Medical Information Service. In the practice program, the certification standard function for patient information management was added to the health information management education system to practice and understand patient information management that corresponds to the functional standard of the EMR certification system. The EMR certification standard practice program for patient information management is composed of the following certification standards. registration number and personal information management, treatment reservation schedule management, personal information revision history management, identification of people with the same name, integrated management of multiple registration numbers, patient search by identification information, patient search by health care type, surgical procedure consent record and inquiry, record/inquiry of consent form for personal information use, display of life-sustaining medical decision information, registration/inquiry of external medical institution documents, registration and inquiry of external examination results. In this way, by operating and practicing the functions of the health information system according to the certification standards, it is possible to understand and practice the certification standards and details of patient information management in the functional area of the certification standards. In addition, since the function of the EMR certification standard can be checked, it will be possible to improve the management ability of the electronic medical record system of the health information manager in the medical institution.

Design of an USB Security Framework for Double Use Detection (이중사용 방지를 위한 USB 보안 프레임워크의 설계)

  • Jeong, Yoon-Su;Lee, Sang-Ho
    • Journal of the Korea Society of Computer and Information
    • /
    • v.16 no.4
    • /
    • pp.93-99
    • /
    • 2011
  • Recently, the development of internet technology makes user's personal data used by being saved in USB. But there is a critical issue that personal data can be exposed with malicious purpose because that personal data doesn't need to be certificate to use. This paper proposes USB security framework to prevent a duplicate use of personal data for protecting the data which in USB. The proposed USB security framework performs certification process of user with additional 4bite of user's identification data and usage choice of USB security token before certification data when the framework uses USB security product in different network. It makes communication overhead and service delay increased. As a result of the experiment, packet certification delay time is more increased by average 7.6% in the proposed USB security framework than simple USB driver and USB Token, and procedure rate of certification server on the number of USB is also increased by average 9.8%.

Improvement Research for Information Protection Management System of Small and Medium Enterprises (중소기업의 정보보호 관리체계 개선방안 연구)

  • Hye-Joung Yun;Yong-Woo Lee;Hee-Doo Heo;Sam-Hyun Chun
    • The Journal of the Institute of Internet, Broadcasting and Communication
    • /
    • v.23 no.2
    • /
    • pp.15-20
    • /
    • 2023
  • Recently, digitalization is accelerating in all industries, and the use of information and personal information produced and used in the process of it is very important for the success or failure of a company. However, malicious attempts to steal or leak major information and personal information of a company as an adverse effect continue to increase, and appropriate defense and response are absolutely necessary. However, in the case of small and medium-sized enterprises, the priority of information protection and the possession of professional manpower are very insufficient compared to large enterprises. This paper studies the certification and audit implemented in Korea, and suggests ways to expand the certification of the information protection system suitable for SMEs and improve the effectiveness of the support system through the expansion of the privacy law notification standard and operation of support system.

Prerequisites for Realizing Urban Air Traffic (UAM) and Personal Air Vehicle (PAV) (도심항공교통(UAM)과 개인용 비행체(PAV) 실현화를 위한 선행 조건에 대한 전망)

  • Choi, Jeongho;Choi, Young-Moon
    • Journal of the Korea Convergence Society
    • /
    • v.11 no.12
    • /
    • pp.147-153
    • /
    • 2020
  • This study is aimed at a basic infrastructure for realizing urban air mobility (UAM) and personal air vehicle (PAV), which have recently been high interest as new means of transportation. The development of UAM and PAV technologies is a field of a high added value that the world is competitively pushing for the world. However, the three most fundamental aspects are the establishing an aviation certification system, finding reliable manufacturers having advanced technical abilities, and the training/securing of professional manpower. Above all, the aviation certification system will be established for the first time. Based on the certification system, it will be possible to realize the government's policy goal of introducing new means of transportation, including the production of aircraft and to realize commercialization that meets international standards that satisfy conformity and compliance. In addition, finding reliable manufacturers, fostering professionals, and establishing an educating system for stable supplying of the professionals are main projects to become a leading country in the field.