Browse > Article
http://dx.doi.org/10.6109/jkiice.2007.11.4.737

A Study on the Evaluation Methodology for Information Security Level based on Test Scenarios  

Sung, Kyung (목원대학교 컴퓨터교육과)
Kim, Seok-Hun (대전보건대학 멀티미디어과)
Abstract
It need estimation model who is efficient and estimate correctly organization's information security level to achieve effectively organization's information security target. Also, estimate class information security level for this and need reformable estimation indicator or standard and estimation methodology of information security systems that application is possible should be studied in our country. Therefore many research centers including ISO are preparing the measuring and evaluating method for network duality. This study will represent an evaluating model for network security based on checklist. In addition, we propose ah measuring and evaluating method for network performance. The purpose of two studies is to present the evaluating procedure and method for measuring security of network on set workwill be identified and a measuring method and procedure will be proposed.
Keywords
Security Level; Network Security; Security Evaluation; Evaluation Method; Control Object;
Citations & Related Records
Times Cited By KSCI : 1  (Citation Analysis)
연도 인용수 순위
1 Silvana Castano et al., 'Database security', Addison Wesly, 1994
2 Lynette Barnard, 'The evaluation and certification of information security against BS7799', Information Management & Computer Security, pp.72-77. 1998
3 한국정보보호진흥원, http://www.kisa.or.kr
4 NIST, 'Security Assessment Guide Information Technology Systems', NIST Special Publication, 800-26, 2001
5 NIST, 'AComparison of the Security Requirements for Cryptographic Modules in FlPS 140-1 and FIPS 140-2', 800-29, 2001
6 정민아 외, '역할기반 접근 제어를 적용한 데이터 베 이스 보안시스템에서의 보안정책 최소화' 한국해양정보통신학회 논문지, 제 9권 6호, pp.1364- 1370, 2005   과학기술학회마을
7 Common Criteria Project, 'Common criteria for information technology security evaluation', common criteria, 1998
8 김수연 외, '정보보호시스템 평가 . 인증체계 모델 제안', 한국정보보호학회지, 제 14권 2호, 2004.4
9 BSI, 'BS7799', BSI, 1999
10 Systems Securrty Engineering Capability Maturity Model, http://www.sse-cmm.org