• Title/Summary/Keyword: safety and security management

Search Result 736, Processing Time 0.029 seconds

Design of a Secure Web-mail System based on End-to-End (End-to-End 기반의 안전한 웹 메일 시스템 설계)

  • 전철우;이종후;이상호
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.13 no.2
    • /
    • pp.13-29
    • /
    • 2003
  • Web-mail system is worthy of note as a next generation e-mail system for its mobility and easiness. But many web-mail system does not have any kind of security mechanism. Even if web-mail system provides security services, its degree of strength is too low. Using these web-mail systems, the e-mail is tabbed, modified or forged by attacker easily. To solve these problems, we design and implement secure web-mail system based on the international e-mail security standard S/MIME in this thesis. This secure web-mail system is composed of server system and client system The server system performs basic mail functions - sending/receiving the mails, storing the mails, and management of user information, etc. And the client system performs cryptographic functions - encryption/decryption of the mails, digital signing and validation, etc. Because client system performs cryptographic functions this secure web-mail system gives its reliability and safety, and provides end-to-end security between mail users. Also, this secure web-mail system increase system efficiency by minimize server load.

Model Verification of a Safe Security Authentication Protocol Applicable to RFID System (RFID 시스템에 적용시 안전한 보안인증 프로토콜의 모델검증)

  • Bae, WooSik;Jung, SukYong;Han, KunHee
    • Journal of Digital Convergence
    • /
    • v.11 no.4
    • /
    • pp.221-227
    • /
    • 2013
  • RFID is an automatic identification technology that can control a range of information via IC chips and radio communication. Also known as electronic tags, smart tags or electronic labels, RFID technology enables embedding the overall process from production to sales in an ultra-small IC chip and tracking down such information using radio frequencies. Currently, RFID-based application and development is in progress in such fields as health care, national defense, logistics and security. RFID structure consists of a reader that reads tag information, a tag that provides information and the database that manages data. Yet, the wireless section between the reader and the tag is vulnerable to security issues. To sort out the vulnerability, studies on security protocols have been conducted actively. However, due to difficulties in implementation, most suggestions are concerned with theorem proving, which is prone to vulnerability found by other investigators later on, ending up in many troubles with applicability in practice. To experimentally test the security of the protocol proposed here, the formal verification tool, CasperFDR was used. To sum up, the proposed protocol was found to be secure against diverse attacks. That is, the proposed protocol meets the safety standard against new types of attacks and ensures security when applied to real tags in the future.

Homeland Security Management: A Critical Review of Civil Protection Mechanism in Korea (국가안전관리: 한국의 시민보호(위기재난관리) 체계에 관한 비판적 고찰)

  • Kim, Hak-Kyong
    • Korean Security Journal
    • /
    • no.26
    • /
    • pp.121-144
    • /
    • 2011
  • The Framework Act on the Management of Disasters and Safety 2004(FAMDS) currently underpins Korean civil protection system, and under this FAMDS, Korean civil protection establishes a three-tiered government structure for dealing with crises and disasters: central government, provincial & metropolitan government, and local government tiers. In particular, the concept of Integrated Emergency Management(IEM) emphasizes that emergency response organizations should work and act together to respond to crises and disasters effectively, based on the coordination and cooperation model, not the command and control model. In tune with this trend, civil protection matters are, first, dealt with by local responders at the local level without direct involvement of central or federal government in the UK or USA. In other words, central government intervention is usually implemented in the UK and the USA, only when the scale or complexity of a civil protection issue is so vast, and thus requires a degree of central government coordination and support, resting on the severity and impact of the event. In contrast, it appears that civil protection mechanism in Korea has adopted a rigid centralized system within the command and control model, and for this reason, central government can easily interfere with regional or local command and control arrangements; there is a high level of central government decision-making remote from a local area. The principle of subsidiarity tends to be ignored. Under these circumstances, it is questionable whether such top-down arrangements of civil protection in Korea can manage uncertainty, unfamiliarity and unexpectedness in the age of Risk Society and Post-modern society, where interactive complexity is increasingly growing. In this context, the study argues that Korean civil protection system should move towards the decentralized model, based on coordination and cooperation between responding organizations, loosening the command and control structure, as with the UK or the USA emergency management arrangements. For this argument, the study basically explores mechanisms of civil protection arrangements in Korea under current legislation, and then finally attempts to make theoretical suggestions for the future of the Korean civil protection system.

  • PDF

Study on the adoption of vocational aptitude test in the fire service (소방공무원의 직업 적성도 도입에 관한 연구)

  • Park, Kyong-Jin;Lee, Bong-Woo;Lee, Guen-Cull;Nam, Ki-Hun
    • Journal of the Korean Society of Industry Convergence
    • /
    • v.22 no.2
    • /
    • pp.155-161
    • /
    • 2019
  • Recently, increases in major disasters such as fires, earthquakes and typhoons have raised public expectations for safety. In addition to this increase in expectations of safety, the government continues to push for more manpower and better treatment for firefighters who are operating in the disaster scene. Despite the improvement of working conditions and increased welfare for firefighters, however, the incidence and turnover of various mental diseases continues to increase. It is reported that many of the diseases such as post-traumatic stress disorder and the turnover of firefighters are due to a mismatch in individual's personality and work environment. In this study, 108 firefighters were evaluated for their vocational aptitude in the new curriculum. Based on the analysis results, new firefighters were proposed to provide employment and education training improvements, and to provide job security suitable for the individual's personality type through the introduction of the vocational aptitude test for firefighters who are working in the fire service. In addition, we would like to use the vocational aptitude test as a material for reducing post-traumatic stress disorder and increasing turnover through long-term tracking and observation, rather than from a one-off perspective.

Research on the Development of SLA Indicators for Personal Information Protection of Public IT Maintenance Business (공공정보화분야 유지관리사업의 개인정보보호를 위한 SLA 지표 개발에 대한 연구)

  • Lee, Kyung-Hwan;Ryu, Gab-Sang
    • Journal of the Korea Convergence Society
    • /
    • v.11 no.6
    • /
    • pp.37-42
    • /
    • 2020
  • In the field of public informatization maintenance business, the attacks of external illegal users such as unauthorized leakage, destruction, and alteration due to intentional or inadequate management of personal information are increasing. In order to prevent such security incidents in advance, it is necessary to develop and quantitatively manage SLA indicators. This study presents the privacy SLA indicators and suggests specific methods such as information collection method and timing of the privacy SLA indicators. In order to confirm the validity and reliability of the proposed SLA indicators, an online survey was conducted with a group of experts. As a result, it was evaluated that compliance rate of personal information destruction and compliance rate of personal information protection system would be effective when applied to new and revised SLA indicators in terms of importance and validity. In the future, using SLA indicators for personal information protection as a standard for public information maintenance will contribute to improving SW quality and securing safety.

A Study on Application Methods of Drone Technology (드론기술 적용 방안 연구)

  • Kim, Hee-Wan
    • The Journal of Korea Institute of Information, Electronics, and Communication Technology
    • /
    • v.10 no.6
    • /
    • pp.601-608
    • /
    • 2017
  • In the fourth industrial revolution, drones are an important element to lead the industry by converging with information technology. Drones are developing various technologies by combining with communication / navigation / traffic management technology, control and detection / avoidance technology, sensor technology, SW and application technology. However, there are various problems in order to settle the drone technology. In this paper, it will be examined the problems of application of drones through application fields of drones, domestic and foreign cases, and core technologies of drones. The growth of the drone market requires improvement of laws and institutions. This paper proposed security vulnerability, privacy and safety problem in wireless communication, and present technical and management problems for drone service in the Korean environment in particular.

Improved Plan for Evacuation of Residents in Landslide-Prone Rural Area (산사태 대비 농촌 주민 대피계획 개선 방안)

  • Kim, Jungmeyon;Park, Sungyong;Lim, Changsu;Yeon, Kyuseok;Kim, Yongseong
    • Journal of The Korean Society of Agricultural Engineers
    • /
    • v.59 no.1
    • /
    • pp.1-10
    • /
    • 2017
  • This study has purpose on deducting problems of evacuation plan for vulnerable populations in disaster and suggesting improvement plan through analysis of disaster weakness in domestic rural region aiming at vulnerable populations in disaster like old people containing most of domestic rural population, sometimes being in blind spot of safety when landslide or disaster occur. As a result, we could know that rural regions have high proportion of vulnerable populations in disaster like old people, also being so weak to landslide and slope collapse. So we suggested development of manual describing prevention of disaster and evacuation for vulnerable populations in disaster like old people and disaster evacuation organization for house and minimizing solution for damage of human life through improvement of steep slope evaluation criteria.

A Study of the Monitoring Model for the Serious Civil Accidents (중대시민재해 모니터링 모델 연구)

  • ChangYeol Lee;GilJoo Park;Twehwan Kim;Jonggil Chae
    • Journal of the Society of Disaster Information
    • /
    • v.19 no.4
    • /
    • pp.834-843
    • /
    • 2023
  • Purpose: The Serious Civil Accidents consist of the public use facilities, the public transports, and the material and its products. According to the Serious Civil Accidents of the Serious Accidents Punishment Act, it must be constructed the safety and health management framework and execution system. In this study. we are design the model of the Serous Civil Accidents management and action system. Method: Firstly, we review from 8th article to 11th article of the enforcement ordinance of the Serious Accidents Punishment Act. From the articles, we design the visual and structural management system supporting the Act. Result: The Serious Civil Accidents apply to the system is consisted of 6 monitoring modules and 4 kinds DB modules. Conclusion: The Serious Civil Accidents are managed by the private enterprises, local governments, and public institutions. Specially, the CEO of restaurants, cafes, et al, do not know the detail information related to the Act. Also in case of the local governments, there are many facilities related the Act. It is not easy to the construct the management framework of the Act. This study provides the simple management structure for the Act.

Cost Analysis of Monitoring System with Optic Fiber Sensors (광섬유센서를 이용한 모니터링 시스템의 비용 분석)

  • You, Young-Jun;Park, Ki-Tae;Joo, Bong-Chul;Lee, Chin-Hyung
    • Journal of Korean Society of societal Security
    • /
    • v.2 no.4
    • /
    • pp.67-73
    • /
    • 2009
  • Civil infrastructure is the basis facility which builds up the base of national economy operation. Consequently unexpected sudden abnormal condition of civil infrastructure causes private and national property loss and moreover can spread social issue. Therefore, continuous maintenance and safety management for the civil infrastructures should be handled with great weight. Monitoring system for managing bridge maintenance was introduced first in the early of 1990s and has been developed up to real time measurement and analysis. Thesedays another system using fiber optic sensors is being developed. This paper presents the cost analysis of bridge monitoring system with fiber optic sensors which is gathering attention. Various cases were considered and the results were compared with that of monitoring system with electronic resistant type sensors widely used. As a results, fiber optic sensor system has good advantages in various cases, and a1so cost effectiveness compared to conventional sensor system.

  • PDF

A Study on ways to secure personal information stability according to the implementation of the mobile phone use system for milityary personnel (군장병 휴대전화 사용제도 시행에 따른 개인정보 안정성 확보 방안 연구)

  • Hwangbo, Wongyu;Shin, Dong-Kyoo
    • Journal of Internet Computing and Services
    • /
    • v.23 no.6
    • /
    • pp.49-58
    • /
    • 2022
  • As military service members are fully permitted to use mobile phones for sickness after work, it is time to minimize the direct collection of personal information from telecommunication companies when opening mobile phones to secure the safety of military service personnel's personal information. Prior to introducing the use of mobile phones by soldiers after work, the Ministry of National Defense established a security control system such as blocking the mobile phone shooting function to prevent security accidents and concerns about some adverse functions such as illegal cyber gambling, game addiction, and viewing pornography. come. Mobile telecommunications companies entrust personal information processing tasks, such as opening mobile phones, to telecommunications agencies and carry out management and supervision, such as checking the status of personal information protection measures. When a military service member opens a mobile phone, a personal information management agency is newly established using the right to portability of personal information, and a system for requesting the transmission of personal information from the military service member is proposed.