Browse > Article
http://dx.doi.org/10.13089/JKIISC.2019.29.6.1437

A Study on the Improvement of Information Protection Policy to Prevent the Misuse of Personal Information : Based on the Results of the Monitoring Personal Information Misuse in Financial Companies  

Kim, Young-ho (Graduate School of Information Security, Korea University)
Kim, In-seok (Graduate School of Information Security, Korea University)
Abstract
As a result of various personal information leakage incidents, the government implemented enhanced privacy protection measures, and financial companies are making efforts to periodically check whether personal information is misused according to government measures, but the problem of misuse of personal information is still not improved. The purpose of this study is to analyze the results of field experiments using the monitoring system for misuse of personal information and to suggest ways to improve the misuse problem. Based on the specific deterrence theory, this study examined the effects of misuse prevention according to the method of dealing with misusers, and analyzed the relationship between the duties of misusers and their years of service and misuse. It is expected that the analysis results of this study will be used for effective policy establishment.
Keywords
Privacy; personal information misuse monitoring; performance of information protection; deterrence theory; information protection policies;
Citations & Related Records
Times Cited By KSCI : 1  (Citation Analysis)
연도 인용수 순위
1 Related ministries joint, "Comprehensive measures to prevent the recurrence of personal information leakage in the financial sector," Mar. 2014.
2 Ministry of the Interior and Safety, "Personal Information Inspection and Administrative Disposal Case Study," Apr. 2018
3 Seung-tae Ryu, "A Study of Detection Measures about the Personal Information Leakage through Scenario-Based Integrated Security Log Analysis," Master's Thesis, Korea University, Dec. 2015
4 Hyung-bum Kim, "Internal Leakage of Personal Credit Information in Financial Institutions, Symptoms Monitoring Design Plan," Master's Thesis, Konkuk University, Dec. 2016
5 Seong-jin Yeon, "The Deterrent Effect of Punishment on Crime," Korean Institute of Criminology, pp. 11-155, Dec. 2003
6 Cheol-woo Jung and Myeong-soon Jang, "Analysis of Effectiveness of Traffic Safety Education on DWI(Driving While Intoxicated) Deterrence," Journal of Korean Society of Transportation, 29(3), June. 2011
7 Joong-ho Ahn, Jun-hyung Park, Ki-moon Sung and Jae-hong Lee, "Impacts of Punishment and Ethics Training on Information Security Compliance: Focus on the Moderating Role of Organizational Type," Information Systems Review, 12(1), pp. 23-42, Apr. 2010
8 Do-yeon Lee, "The effect of punishment and training on information security policy compliance behavior : the empirical analysis through field experiments," Master's Thesis, Yonsei University, Dec. 2017
9 Jong-ki Kim and Da-woon Oh, "A Study on Security Policy Violations of Organization Members," Information policy, 25(3), pp. 95-115, 2018
10 Ow-won Park and Jong-seok Cha, "Effects of Organizational Tenure of R&D Workforce on Creative Performance and Organizational Commitment : Focusing on Moderating Effect of Career Plateau," Korean Journal of Business Administration 32(2), pp. 327-345, Feb. 2019
11 Anat Hovav and John D'Arcy, "Applying an extended model of deterrence across cultures : An investigation of information systems misuse in the U.S. and South Korea," Information & Management, vol.49, no.2, pp.99-110, 2012   DOI
12 Hye-jeong Lee, Gyu-chang Yu and Soon-young Myung, "The impact of job-based HR on the attitude of employee," A Study on the Organization and Personnel Management, 43(3), pp. 149-176, Aug. 2019
13 Chul-ju Park and Myung-seong Yim, "An Understanding of Impact of Security Countermeasures on Persistent Policy Compliance," Korean Studies Information Service System, 10(4), pp. 23-35, May. 2012
14 Dong-keun Choi, Mi-sun Song, Jong-in Im and Kyung-ho Lee, "Study the role of information security personnel have on an organization's information security level," Journal of the Korea Institute of Information Security and Cryptology, 25(1), pp. 197-209, Feb. 2015   DOI
15 Paschal Sheeran, "Intention-behavior relations: A conceptual and empirical review," European review of social psychology, vol.12, no.1, pp. 1-36. 2002.   DOI
16 Bo-ra Kim, Jong-won Lee and Beom-soo Kim, "Effect of Information Security Training and Services on Employees' Compliance to Security Policies," Journal of informatization policy, 25(1), pp. 99-114, Feb. 2018