Browse > Article
http://dx.doi.org/10.33778/kcsa.2021.21.1.019

Development of requirements for information security management system (ISO 27001) with CPTED in account  

Lim, Heon-Wook (한세대학교 교양학부)
Publication Information
Abstract
The purpose of this study was to add CPTED to the information security area. The control items of ISO 27001 (11 types) and the application principles of CPTED (6 types) were mapped. And the relevance between the items was verified through the FGI meeting through 12 security experts. As a result of the survey, the control items with a relevance of at least 60% on average are security policy, physical and environmental security, accident management, and conformity. As a result, the comprehensive policy was shared with CPTED's items as a whole. The specialized control items are security organization, asset management, personnel security, operation management, access control, system maintenance, and continuity management. However, specialized control items were mapped with each item of CPTED. Therefore, information security certification and septed are related. As a result, environmental security can be added to the three major areas of security: administrative security, technical security, and physical security.
Keywords
CPTED; ISO 27001; Management security; Technical security; Physical security; Environmental security;
Citations & Related Records
연도 인용수 순위
  • Reference
1 임헌욱, "산업보안 패러다임 변화에 따른 보안 교육방안 고찰", 보안공학연구논문지, 12권 제6호, pp.597-608, 2015.   DOI
2 강용길, 박민영, "CPTED 제도화를 위한 법령정비 방안에 관한 연구", 경찰학연구, 14권, 제2호, pp.3-28, 2014.
3 http://www.cpted.kr 범죄예방디자인 연구정보센터
4 임헌욱, "융합보안 설비구축 원인에 대한 근거이론적 접근", 융합보안논문지, 16권, 제7호, pp.69-75, 2016.
5 경찰청, 생활안전과, "환경설계를 통한 범죄예방(CPTED) 방안", 2005.
6 임헌욱, "정보보호 산업의 기술성숙도에 따른 비즈니스 모델 상관성 분석", 융합보안논문지, 19권, 제4호, pp.165-171, 2019.   DOI
7 임헌욱, "국제표준화기구(ISO)의 인증기준에 준하는 「국가중요시설」의 요구사항 개발", 융합보안논문지, 17권, 제3호, pp.65-71, 2017.
8 https://www.kab.or.kr/
9 임헌욱, "정보보호 관리체계의 마케팅 전략 수립", 보안공학연구논문지, 12권, 제4호, pp.305-318, 2015.   DOI
10 조진일, 박성철, 최형주, 박희원, "학교범죄예방을 위한 디자인(CPTED) 평가모형 개발", 한국교육 40권, 3호, pp.133-154, 2013.
11 임헌욱, "정보보호 관리체계의 마케팅 전략 수립" 보안공학연구논문지, 12권, 4호, pp.305-318, 2015.   DOI