Browse > Article
http://dx.doi.org/10.13089/JKIISC.2022.32.2.279

A Comparative Study on Type Approval of Maritime Cyber Security and RMF in the View of System Development Lifecycle  

Lee, Suwon (Hanwha System)
Hwang, Seyoung (Hanwha System)
Hong, Jina (Hanwha System)
Kim, Byeong-jin (Hanwha System)
Abstract
With the advancement of cyber threats and the development of hacking technologies, cyber security is being emphasized in various fields such as automobiles and ships. According to this trend, various industrial fields are demanding cybersecurity, and related certifications. In this paper, cybersecurity type approval is compared with the RMF stage under the premise that there are common elements with RMF in that cybersecurity elements must be reflected in the entire system development cycle. For comparison, type approval of maritime cyber security of the Korean Register of Shipping was selected. In conclusion, although type approval of maritime cyber security acquisition procedure is not divided by development stage like the RMF, there are the commonalities in the procedure to apply the cybersecurity element to the System development lifecycle like the RMF. Accordingly, the possibility of determining that the cybersecurity element was applied to the entire development cycle was confirmed.
Keywords
RMF(Risk Management Framework); Cyber Risk; SDL(Security Development Lifecycle);
Citations & Related Records
연도 인용수 순위
  • Reference
1 Seungmok Lee, "A study on the application of RMF for weapon systems in Korea: weapons and security system integration," Institute of Defense Acquisition program, Jornal of Advances in Military Studies, Vol. 4, No. 3, pp.191-208, Dec. 2021   DOI
2 "IMO International Maritime Organization Policy Trends", Korea Maritime Institute. Aug. 2018. vol 7.
3 "Automotive Cyber Security Guidelines," Ministry of Land, Infrastructure and Transport and Korea Transportation Safety Authority, Dec. 2020
4 Cho Hyun Suk, "A Case Study on the Application of RMF to Domestic Weapon System," master's thesis, Korea University, Feb. 2020
5 wikipedia, "Korean Register", https://ko.wikipedia.org/wiki/%ED%95%9C%EA%B5%AD%EC%84%A0%EA%B8%89, Nov. 2021
6 "Maritime Cybersecurity Systems Guidelines," Korean Register, Apr. 2019
7 "Maritime Cybersecurity Type Approval Guidelines," Korea Register, Apr. 2019
8 "Detailed guide to analysis and evaluation of technical vulnerabilities of major information and communication infrastructure," Korea Internet & Security Agency, Jun. 2018
9 TITANIA, "Nipper, Paws" https://www.titania.com, Nov. 2021
10 Jina Hong, Seyong Hwang, Suwon Lee and Jaeyeon Lee, "Implementation of Reusable Technical Risk Assessment Tool to Reinforce Cybersecurity", 2020 KIMST, P 2-16, Nov. 2020