• 제목/요약/키워드: Security Risk Analysis

Search Result 528, Processing Time 0.031 seconds

A Security Log Analysis System using Logstash based on Apache Elasticsearch (아파치 엘라스틱서치 기반 로그스태시를 이용한 보안로그 분석시스템)

  • Lee, Bong-Hwan;Yang, Dong-Min
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.22 no.2
    • /
    • pp.382-389
    • /
    • 2018
  • Recently cyber attacks can cause serious damage on various information systems. Log data analysis would be able to resolve this problem. Security log analysis system allows to cope with security risk properly by collecting, storing, and analyzing log data information. In this paper, a security log analysis system is designed and implemented in order to analyze security log data using the Logstash in the Elasticsearch, a distributed search engine which enables to collect and process various types of log data. The Kibana, an open source data visualization plugin for Elasticsearch, is used to generate log statistics and search report, and visualize the results. The performance of Elasticsearch-based security log analysis system is compared to the existing log analysis system which uses the Flume log collector, Flume HDFS sink and HBase. The experimental results show that the proposed system tremendously reduces both database query processing time and log data analysis time compared to the existing Hadoop-based log analysis system.

농식품안전 정책방향

  • Jo, Jang-Yong
    • 한국환경농학회:학술대회논문집
    • /
    • 2009.07a
    • /
    • pp.3-18
    • /
    • 2009
  • It is difficult for consumers to satisfy high safety request with post-management method such as inspection and surveillance, as various changes in-and-out of the country associated with food safety. In terms of food safety problems related to foods, it is crucial to recognize public health and consumer protection and construct pre-preventive Food Control System. A joint committee, FAO/WHO made the following consultations to the National Food Safety System. ${\circ}$ Approach entirely from farm to table ${\circ}$ Get ready for Risk Analysis System ${\circ}$ Secure transparency ${\circ}$ Establish the optimal policy by evaluating the effect of regulation When it comes to summarizing the consultation, it would be accumulated as two key words; "Efficiency" and "Credibility". Whereas the problem of efficiency focuses on precaution rather than post-management, it requires policy option to maximize consumer's benefit by evaluating the cost for the Food Safety Management and its benefit. Also, analyzing risk's character and amount, demanding an optimal means, and introducing scientific analysis system put much value on the stakeholder's communications are procedure's security which can satisfy both "Efficiency" and "Credibility" simultaneously. Especially, it is emphasized here that Risk Assessment need to be separated from Risk Management. This action is a valid means of credibility security throughout improving transparency. A number of nations and organizations have reformed the method of food management passing through reflection and examination of the prior National Food Safety Management since BSE occurred in Britain, 1996. FSA; Food Standard Agency, AFFSA, EFSA, BfR, and FSC are Risk Assessment Organization functionally separated from Risk Management Organization, JECFA, JMCFA, JMPR, JEMRA in Codex charge Risk Assessment internationally. In case of advanced countries excluding several those such as The U.S. and so forth, though these Risk Assessment Organizations are either separated functionally within Risk Management Organization or operated as apart organ, common factors are in which it has independence as Science Base. While securing independence of Risk Assessment Function, it is a tendency Risk Management should be functionally unified into efficiency as well. Though Germany constructs integral Risk Management System of diverse ways according to social and political conditions of each country such as GFOCP, DVFA, SNFA, CFIS and AQIS, there is a key word in the center, "Securing efficiency of Food Safety Management". However our nation has a representative plural;diversified system with The U.S., we took a step forward for unification as empowering policy's generalization;adjustment and Risk Assessment Function by means of enacting the "Food Safety Fundamental Law" in 2008 and establishing the "Food Safety Policy Commission" with private and governmental sectors in the Prime Minister's office. Even though the unification of Risk Management hereby increased, there is the lack of strengthening function of Risk Assessment and securing independence. It needs to be required for the professional committee in Food Safety Policy Commission to develop as a exclusive office of Risk Assessment by separating from a policy decision. Administrative Branches should reinforce feeble functions such as fundamental investigation;research for carrying out Risk Assessment with securing efficiency throughout reassessment of prior Risk Management Means.

  • PDF

Personal Information System risk analysis standard supporting tool development (개인정보시스템 위험도 분석 기준 지원 도구 개발 연구)

  • Han, Kyung-Su;Jung, Hyun-Mi;Lee, Gang-Soo
    • Proceedings of the Korean Institute of Information and Commucation Sciences Conference
    • /
    • 2012.05a
    • /
    • pp.663-666
    • /
    • 2012
  • Since September 30 2011, depending on Personal Information Protection Act article 29 and Act standard securing personal information safety the fifth clause of article 7, in case personal information manager of public and private enterprise saves unique indentifying information to internal network, the manager can enforce that decide checking of cryptographic application and a range of application following risk analysis criteria result. Until December 31 2012, enterprises complete the application of cryptographic technology or the equivalent. The paper is research and development on supporting tool that suggest risk analysis criteria based on personal information risk analysis criteria that be provided by MOPAS(Ministry Of Public Administration and Security) and KISA(Korea Internet Security Agency) for personal information processing.

  • PDF

Development of Risk Assessment Index in Special Management Target Facilities According to the Fire Occurrence Factors (화재발생 요인에 따른 특정관리대상시설등의 위험도 평가 지수의 분석 및 개발)

  • Park, Mi Yun;Park, Jong Bok;Park, Jae Hak
    • Journal of Korean Society of Disaster and Security
    • /
    • v.5 no.2
    • /
    • pp.61-70
    • /
    • 2012
  • The range of special management target facilities is seperated by the building sector and the field of civil engineering. In the present study, the risk analysis was performed, related to fire occurred for the last five years, in the field of residential and non-residential facilities in buildings. Most of fire incidents occurred in residential and non-residential facilities was the cause of the electrical, and the resulting casualties were also very high. Therefore, based on the results, the risk evaluation index was developed, identifying the causes of fire occur and doing the fire vulnerability analysis for each facility. The result of this study can be utilized safety management to these facilities for the future, especially, inducing a more specialized and intensive safety management.

Impact of Disaster Awareness on Government Trust (재난에 대한 인식이 정부신뢰에 미치는 영향)

  • Lee, Youngjin
    • Journal of Korean Society of Disaster and Security
    • /
    • v.13 no.4
    • /
    • pp.47-63
    • /
    • 2020
  • This study aimed to investigate the effects of social disaster risk perception levels of Koreans on government trust. To this end, differences in disaster risk perception levels based on social disaster types and the effects of social disaster risk perception levels on government trust were analyzed. In the preliminary survey, three types of social disasters with high risk levels (bird flu, fine dust, and nuclear power plants) were selected. The survey was conducted on 1,109 Korean men and women aged 20 years and older. First, the analysis results demonstrated that social disaster perception levels differed based on social disaster types. Second, the results showed that, in terms of social disasters, proactivity, personal knowledge, familiarity, severity, fear, and risk associated with chances of recovery did not affect government trust. Third, the perception of delayed social disaster risk had a positive effect on government trust. Fourth, scientific knowledge about social disasters, control capabilities, lethality, and risk perception at the onset time had a negative effect on government trust. In conclusion, the implications and limitations of this study were discussed.

A Study on the Risks Excluded of Marine Insurance Claims (해상보험 클레임의 면책위험에 관한 고찰)

  • Jung Sung-Hoon;Choi Hyuk-Jun
    • Journal of Arbitration Studies
    • /
    • v.15 no.2
    • /
    • pp.125-162
    • /
    • 2005
  • This paper examined excluded risks of insurer in marine insurance generally, and found out the existing studies on the excluded risks, which were accomplished partially and fragmentarily, to conduct a comparative analysis of marine insurance based on the general flow of claim adjustment. It arranges the existing studies to settle a dispute between the parties -insurer and assurer- and studies the excluded risk based on risk change of the insured by analyzing characteristic and class of security violation, and meaning, form, effect of risk change. it inquires into and analysis cases of the Korean Supreme Court related to the exclusion and illegal act of marine insurance to compare marine theorists' opinion with commercial law.

  • PDF

Research on the Relationship Between the OHSAS 18000 System Implementation and Competitiveness in Taiwan's Industries

  • Chung, Yi-Chan;Chiu, Chung-Ching;Tsai, Chih-Hung;Hsu, Yau-Wen
    • International Journal of Quality Innovation
    • /
    • v.7 no.3
    • /
    • pp.24-45
    • /
    • 2006
  • In recent years, the labor consciousness is gradually valued. During the process of pursuing sustainable operation, the enterprises treat occupational hazard risk as the waste of cost. The purpose of OHSAS 18000 occupational security and health management system is to systematically establish the business managerial measures in terms of occupational security and calamity prevention. This research proceeded with questionnaire analysis with respect to the relationship between the OHSAS 18000 system implementation and competitiveness in Taiwan's industries. The research result revealed that there was significant relationship between Taiwan firms' execution of OHSAS 18000 system and industry competitiveness. Thus, the enterprises can decide the proper managerial plans according to the result of their own risk evaluation to prevent the happening of accidents and reduce the operational cost. They can thus completely control business occupational hazard risk through "systematic" management.

Analysis of Risk Factors for Patient Safety Management (환자안전 관리를 위한 위험요인 분석)

  • Ahn, Sung-Hee
    • Journal of Korean Academy of Nursing Administration
    • /
    • v.12 no.3
    • /
    • pp.373-384
    • /
    • 2006
  • Purpose: This is a pilot study to identify patient safety risk factors and strategies for patient safety management perceived by nurses. Methods: Data were collected and analyzed with an open questionnaire from April to May 2005, targeted on 100 nurses working in two hospitals. The issues were 'what are risk factors for patients, nurses, and other medical practitioners? How do they prevent with the aftermath of risk factors, causes of incidents?' For data analysis, types and frequency of risk factors were worked out, using the Australian Incident Monitoring System Taxonomy. Results: The types of patient safety risk factor perceived by nurses were as follows ; therapeutic devices or equipment, infrastructure and services (29.5%), nosocomial infections (16.3%), clinical processes or procedures (15.4%), behavior, human performance, violence, aggression, security and safety (12.2%), therapeutic agents (9.7%), injuries and pressure ulcers (8.7%), logistics, organization, documentation, and infrastructure technology (5.6%). Strategies for patient safety included training of prevention of infection, education about safety management for patients and medical professionals, establishment of reporting system, culture of care, pre-elimination of risk factors, cooperative system among employees, and sharing information. Conclusion: These results will be used to provide evidences for patient safety management and educational program.

  • PDF

Problem Analysis and Countermeasures Research through Security Threat Cases of Physical Security Control Systems (물리보안 관제시스템의 보안위협 사례를 통한 취약점 분석 및 대응방안 연구)

  • Ko, Yun Seong;Park, Kwang Hyuk;Kim, Chang Soo
    • Journal of Korea Multimedia Society
    • /
    • v.19 no.1
    • /
    • pp.51-59
    • /
    • 2016
  • Physical security protecting people from physical threats, such as a person or vehicle, has received a great attention. However, it has many risks of hacking and other security threats because it is highly dependent on automated management systems. In addition, a representative system of physical security, a CCTV control system has a high risk of hacking, such as video interceptions or video modulation. So physical security needs urgent security measures in accordance with these threats. In this paper, we examine the case of security threats that have occurred in the past, prevent those from threatening the physical security, and analyze the security problem with the threats. Then we study the countermeasures to prevent these security threats based on the problems found in each case. Finally we study for the method to apply these countermeasures.

The effects of clothes shopping orientation and perceived risk on purchase intention in social commerce (소셜커머스 이용자들의 의복쇼핑성향과 지각된 위험이 패션제품 구매의도에 미치는 영향)

  • Kim, Hyejin;Chung, Myungsun
    • The Research Journal of the Costume Culture
    • /
    • v.23 no.3
    • /
    • pp.384-399
    • /
    • 2015
  • The purpose of this study is to empirically investigate consumers' clothes shopping orientation factors and perceived risk factors affecting the purchase intention for fashion products in social commerce. For this study, questionnaires were given to 500 adults in their 20s~30s who had experience of using social commerce related to general products or services. To analyze the results of this study, we conducted descriptive analysis, factor analysis, reliability analysis, a chi-square independence test, and hierarchical regression analysis using SPSS 18.0. The results were as follows. First, social commerce users'clothes shopping orientations were classified into the pursuit of pleasure, brand, fashion innovation, trend, and utility, and the perceived risks were classified into the risks related to products, consumer service, loss of purchase opportunity, confidence in the web site, economy, and security. Second, clothes shopping orientation factors and perceived risk factors had a somewhat significant influence on the purchase intention for fashion products. Third, there was a significant difference between sexes regarding the influences of the clothes shopping orientation factors and perceived risk factors for the purchase intention of fashion products. Finally, this study aims to provide useful information for fashion companies to enable them to establish specific strategies that can influence consumers'purchase behaviors through social commerce.