Browse > Article
http://dx.doi.org/10.33778/kcsa.2019.19.4.107

A Study on DSMS Framework for Data Security Certification  

Yoo, Seung Jae (중부대학교 정보보호학과)
Publication Information
Abstract
Data security is the planning, implementation and implementation of security policies and procedures for the proper audit and authorization of access to and use of data and information assets. In addition, data serviced through internal / external networks, servers, applications, etc. are the core objects of information protection and can be said to focus on the protection of data stored in DB and DB in the category of information security of database and data. This study is a preliminary study to design a proper Data Security Management System (DSMS) model based on the data security certification system and the US Federal Security Management Act (FISMA). And we study the major security certification systems such as ISO27001 and NIST's Cybersecurity Framework, and also study the state of implementation in the data security manager solution that is currently implemented as a security platform for preventing personal data leakage and strengthening corporate security.
Keywords
DSMS; Data Security; Security Policy;
Citations & Related Records
연도 인용수 순위
  • Reference
1 김민준, 김귀남 "정보보안거버넌스 프레임워크에 관한 연구", 융합보안논문지 제10권 제4호, pp.13-19, 2015
2 노시춘, "BMO기법을 활용한 정보보안 비즈모델 평가시스템 소프트웨어 아키텍쳐 설계방법", 융합보안논문지 제13권 제3호, pp.71-77, 2013.
3 2019년 데이터 유출 예방을 위한 5가지 방법 (http://blog.naver.com/cososyskorea/221461085833)
4 한국데이터베이스진흥원, "데이터베이스보안 가이드라인", 2011
5 https://advisera.com/27001academy/
6 http://www.natlawreview.com/ & https://www.boho.or.kr/
7 https://fasoo.com/solutions/fasoo-data-security-framework
8 http://www.itworld.co.kr/news/99457
9 https://www.mcafee.com/enterprise/ko-kr/solutions/prevent-data-breaches.html
10 http://www.itworld.co.kr/news/99457
11 https://www.mcafee.com
12 Veracode, "Understanding NIST 800-37 FISMA Requirements" 2008.
13 http://cososys.kr/
14 https://linfordco.com/blog/fisma-compliance