Browse > Article
http://dx.doi.org/10.6109/jkiice.2007.11.12.2280

A Study on the New Threat Level Decision Method for Information System  

Kim, Tai-Hoon (Dept. of Multimedia Engineering, Hannam University)
Yeo, Sang-Soo (Dept. of Information and Systems Engineering, Kyushu University)
Cho, Sung-Eon (Dept. of Information and Communication Engineering, Sunchon National University)
Abstract
Information system contains various components, and these components can be categorized into some types. When preparing security level management activity, it is most important to define the target of management activity. And after deciding these targets, security level management activity can be started. This paper defines management targets by dividing information system into some parts, and shows these targets can be managed variously according to operation environments and characteristics.
Keywords
Threat Level; Security Level Management; Division of Information System;
Citations & Related Records
연도 인용수 순위
  • Reference
1 ISO. ISO/IEC 21827 Information technology Systems Security Engineering Capability Maturity Model (SSE-CMM)
2 Tai-hoon Kim and Haeng-kon Kim 'A Relationship between Security Engineering and Security Evaluation,' ICCSA2004, LNCS 3046, Part 4, 2004
3 Haeng-Kon Kim, Tai-Hoon Kim, Jae-sung Kim 'Reliability Assurance in Development Process for TOE on the Common Criteria,' 1st ACIS International Conference on SERA
4 Sang-soo Yeo, Tai-hoon Kim, Sung-eon Cho, Kouich Sakurai 'A Study on the Development Site Security for Embedded Software,' The Journal of Korea Navigation Institute, Vol.11 No.3, 2007
5 ISO. ISO/IEC 15408-1:1999 Information tech nology-Security techniques - Evaluation criteria for IT security - Part 1: Introduction and general model
6 Tai-hoon Kim and Haeng-kon Kim 'The Reduction Method of Threat Phrases by Classifying Assets,' ICCSA2004, LNCS 3043, Part 1, 2004
7 Sangkyun Kim, Hong Joo Lee, Choon Seong Leem 'Applying the IS017799 Baseline Controls as a Security Engineering Principle under the Sarbanes-Oxley,' Act, ICCMSE 2004, 2004
8 Tai-hoon Kim, Seok-soo Kim, Gil-cheol Park 'Analysis of Threat Agent for Important Information Systems,' The Journal of Korea Navigation Institute, Vol.11 No.2, 2007