Browse > Article
http://dx.doi.org/10.13089/JKIISC.2019.29.5.1153

A Study on Maturity Model for the Assessment of Cyber Resilience Level in the Defence Information System  

Choi, Jae-hyeok (Ajou University Dept. of NCW)
Kim, Wan-ju (Ajou University Dept. of NCW)
Lim, Jae-sung (Ajou University Dept. of NCW)
Abstract
Recently, threats of hacking have been increasing on the national intelligence service network and key infrastructure, including the defense field. The defense information system responds to threats from the outside through the network separation, but if the defense information system is hacked, it has a serious impact on the operations of wartime or peacetime military forces. Today, cyberattacks and threats are rising to unpredictable levels and making it practically impossible to completely block and prevent hacking threats completly. So, in this study proposed a maturity model to assess the level of cyber-resilience, which is the ability to ensure the system's viability and maintain continuity through rapid response and recovery if signs of cyberattacks by the defense information system are expected or occurred. The proposed maturity model is expected to contribute to improving the cyber security level of the defense information system by assessing the level of cyber resilience of the defense information system and identifying and supplementing fields that are lacking.
Keywords
Cyber Resilience; Maturity model; Cyber Security; Defense Information System; Cyber Warfare;
Citations & Related Records
Times Cited By KSCI : 1  (Citation Analysis)
연도 인용수 순위
1 National Intelligence Science, Ministry of Science & ICT, Korea Communications Commission, Financial Services Commission Ministry of Public Administration & Security, "National information security white paper 2018," May. 2018.
2 U.S. White House, "National Cyber Strategy," pp. 6, Sep. 2018.
3 U.K. HM government, "National Cyber Security Strategy 2016-2021," Nov. 2016.
4 Sangbae Kim, "Cyber security strategegies of major powers in world politics," Review of International and Area studies, 26(3), pp. 67-108, Sep. 2017.
5 S.Y. Son, H.Y. Kim and J.Y. Yu, "The safety of the Hyper-connected society and measures for securement of cyber resilience," Dec. 2017.
6 National Security Office, " National cybersecurity strategy," pp. 12, Apr. 2019.
7 Ministry of National Defend(MND), "Defence informatization task directive," May. 2019.
8 B.J. Jeon, J.H. Kang, J.C. Yoo and K.Y. Shin, "An Analysis of IPv6 Transition Status and Efficient Address Allocation for the Defense Information Systems," Korean Journal of Military Art and Science, 73(3), pp. 227-249, Oct. 2017.   DOI
9 Y.N. Oh and K.S. Hwang, "A study on the impact of vendor relationship on the success of the National Defence Information System for outsourcing," The Korean Operations Research and Management Science Society, pp. 475-478, Oct. 2005.
10 Hyeon-suk Lyu, "A Study on Cyber Security Policy and Governance in the ICT Convergence Environment: Focused on "Authentication'," pp. 16, Dec. 2015
11 National Infrastructure Advisory Council, "A framework for establishing critical infrastructure resilience Goals," pp. 15, Oct. 2010.
12 Bodeau, D and Graubart R, "Cyber resiliency engineering framework," The MITRE Coporation, pp. 8, Jan. 2011.
13 EY, "Achieving resilience in the cyber ecosystem," pp. 1, Dec. 2014.
14 Bank for Internal Settlements(BIS) CPMI - IOSCO, "Guidance on cyber resilience for financial market infrastructures," pp. 4, Jun. 2016.
15 Carnegie Mellon University Software Engineering Institute, "CMMI for Development, Ver1.3," Nov. 2010.
16 J.Y. Suh, B.W. Park, S.H. Lee, K.I. Cho and J.H. Yun, "Future Risk and Resilience," 2014.
17 Heejun Yu, "Reinforcement measures of the cyber resilience of domestic FMI reflecting the recent trends of onternational discussion," Korea Bank, Apr. 2016.
18 Jaesuk Yun, "Development and Application of Global Cybersecurity Maturity Index Model," Ph.D. Thesis, Korea University, Dec. 2016.
19 G.R. Choi and C.J. Kim, "A Study on BigData Capability Maturity Model," Journal of Korean institute of information technology, 12(12), pp. 149-162, Dec. 2014.
20 S.K. Lee and I.S. Kim, "A Study on the Method of Checking the Level of Information Security Management Using Security Maturity Model," Journal of the Korea Institute of Information Security & Cryptology, 28(6), pp. 1585-1594, Dec. 2018.   DOI
21 U.S. Department of Homeland Security and Department of Energy, "Cybersecurity Capability Maturity Model Version 1.1," Feb. 2014.
22 MND, "Defense cyber security directive," Dec. 2018.
23 Korea Internet & Security Agency(KISA), "Personal information & Information Security Management System Certification Guide," Jan. 2019.