• Title/Summary/Keyword: 기록관리규정

Search Result 178, Processing Time 0.02 seconds

Analysis and Improvement Strategies for Korea's Cyber Security Systems Regulations and Policies

  • Park, Dong-Kyun;Cho, Sung-Je;Soung, Jea-Hyen
    • Korean Security Journal
    • /
    • no.18
    • /
    • pp.169-190
    • /
    • 2009
  • Today, the rapid advance of scientific technologies has brought about fundamental changes to the types and levels of terrorism while the war against the world more than one thousand small and big terrorists and crime organizations has already begun. A method highly likely to be employed by terrorist groups that are using 21st Century state of the art technology is cyber terrorism. In many instances, things that you could only imagine in reality could be made possible in the cyber space. An easy example would be to randomly alter a letter in the blood type of a terrorism subject in the health care data system, which could inflict harm to subjects and impact the overturning of the opponent's system or regime. The CIH Virus Crisis which occurred on April 26, 1999 had significant implications in various aspects. A virus program made of just a few lines by Taiwanese college students without any specific objective ended up spreading widely throughout the Internet, causing damage to 30,000 PCs in Korea and over 2 billion won in monetary damages in repairs and data recovery. Despite of such risks of cyber terrorism, a great number of Korean sites are employing loose security measures. In fact, there are many cases where a company with millions of subscribers has very slackened security systems. A nationwide preparation for cyber terrorism is called for. In this context, this research will analyze the current status of Korea's cyber security systems and its laws from a policy perspective, and move on to propose improvement strategies. This research suggests the following solutions. First, the National Cyber Security Management Act should be passed to have its effectiveness as the national cyber security management regulation. With the Act's establishment, a more efficient and proactive response to cyber security management will be made possible within a nationwide cyber security framework, and define its relationship with other related laws. The newly passed National Cyber Security Management Act will eliminate inefficiencies that are caused by functional redundancies dispersed across individual sectors in current legislation. Second, to ensure efficient nationwide cyber security management, national cyber security standards and models should be proposed; while at the same time a national cyber security management organizational structure should be established to implement national cyber security policies at each government-agencies and social-components. The National Cyber Security Center must serve as the comprehensive collection, analysis and processing point for national cyber crisis related information, oversee each government agency, and build collaborative relations with the private sector. Also, national and comprehensive response system in which both the private and public sectors participate should be set up, for advance detection and prevention of cyber crisis risks and for a consolidated and timely response using national resources in times of crisis.

  • PDF

Job Analysis for IT Security Workers in Defense Industry through DACUM Process (DACUM 기법을 이용한 방위산업체 정보통신보안실무자 직무분석)

  • Woo, Kwang Jea;Song, Hae-Deok
    • Convergence Security Journal
    • /
    • v.14 no.4
    • /
    • pp.73-84
    • /
    • 2014
  • As the society turns into more of an information an technology centric society, the importance of information security is being increased these days. Recently, as the number of leaking accidents of personal information and valuable industrial technology is on the rise, every field of industry endeavors to come up with a security solution. In particular, since defense industry is a field where it establishes national defense power that is essential of national security, it requires higher standards of security solutions than any other ordinary fields of industry. According to Defense Industry Security Work Instructions, defense industry firms from security organizations and employ a security worker corresponding to the firm's scale and conditions. In an environment where essential information and technology are stored and managed in information and communication system or storing media, the duty and role of IT security workers are crucial. However, there is a shortage of systematic analysis on the work of IT security workers and development of curriculum to enhance their professionalism. Thus DACUM process, a job analysis technique, was used to identify IT Security workers' duties and responsibilities and verify the validity and credibility of the deducted results from the survey. The findings of this study will help in development of IT security duty in defense industry and can be used as baseline data for the development of curriculum and amendments of related regulations.

Generation, Storing and Management System for Electronic Discharge Summaries Using HL7 Clinical Document Architecture (HL7 표준임상문서구조를 사용한 전자퇴원요약의 생성, 저장, 관리 시스템)

  • Kim, Hwa-Sun;Kim, Il-Kon;Cho, Hune
    • Journal of KIISE:Databases
    • /
    • v.33 no.2
    • /
    • pp.239-249
    • /
    • 2006
  • Interoperability has been deemphasized from the hospital information system in general, because it is operated independently of other hospital information systems. This study proposes a future-oriented hospital information system through the design and actualization of the HL7 clinical document architecture. A clinical document is generated using the hospital information system by analysis and designing the clinical document architecture, after we defined the item regulations and the templates for the release form and radiation interpretation form. The schema is analyzed based on the HL7 reference information model, and HL7 interface engine ver.2.4 was used as the transmission protocol. This study has the following significance. First, an expansion and redefining process conducted, founded on the HL7 clinical document architecture and reference information model, to apply international standards to Korean contexts. Second, we propose a next-generation web based hospital information system that is based on the clinical document architecture. In conclusion, the study of the clinical document architecture will include an electronic health record (EHR) and a clinical data repository (CDR), and also make possible medical information-sharing among various healthcare institutions.

Improvement of Adjusted Funds according to Border Adjustment Method on Cadastral Reform Project (경계설정에 따른 지적재조사의 조정금 개선방안 연구)

  • Yoo, Mi-Young;Choi, Yun-Soo;Choi, Han-Young;Park, Moon-Jae
    • Journal of Cadastre & Land InformatiX
    • /
    • v.50 no.2
    • /
    • pp.117-132
    • /
    • 2020
  • The study studied ways to improve the adjustment of the cadastral reform project after analyzing and evaluating the method of determining the boundaries and the overall status of the adjustment, focusing on cases of complaints in the business district in Sejong City, where the re-investigation project was completed. Measures to improve the adjustment amount of the cadastral reform project were largely divided into boundary adjustment and improvement measures according to the scope of area allowance and institutional improvement. According to an analysis of the status of boundary adjustment in Sejong City, the boundary of the cadastral reform project was being adjusted in various ways, and among them, it was found that it is simple to adjust, to formalize parcels, and that many adjustments are being made centering on resolving blind areas by establishing new roads. When setting such a boundary, it is necessary to establish an efficient and reasonable boundary by actively encouraging sufficient consultation with owners and an adjustment boundary that reflects the personal will of landowners to minimize disputes over the adjustment amount. In terms of improvement measures based on the area limit, it is necessary to accurately record and preserve the results of the cadastral resurvey in numerical data and to ease or exempt the adjustment amount if it is within the area permissible scope of the Spatial Data Management Act when calculating the adjustment amount. Finally, in relation to the adjustment, it was judged that it would be necessary to provide long-term low-interest loans to their own land to landowners, and that it would be necessary to calculate the adjustment through appraisal calculated by third parties fairly and objectively based on value judgment.

A Study on Air Operator Certification and Safety Oversight Audit Program in light of the Convention on International Civil Aviation (시카고협약체계에서의 항공안전평가제도에 관한 연구)

  • Lee, Koo-Hee;Park, Won-Hwa
    • The Korean Journal of Air & Space Law and Policy
    • /
    • v.28 no.1
    • /
    • pp.115-157
    • /
    • 2013
  • Some contracting States of the Convention on International Civil Aviation (commonly known as the Chicago Convention) issue FAOC(Foreign AOC and/or Operations Specifications) and conduct various safety audits for the foreign operators. These FAOC and safety audits on the foreign operators are being expanded to other parts of the world. While this trend is the strengthening measure of aviation safety resulting in the reduction of aircraft accident, it is the source of concern from the legal as well as economic perspectives. FAOC of the USA doubly burdens the other contracting States to the Chicago Convention because it is the requirement other than that prescribed by the Chicago Convention of which provisions are faithfully observed by almost all the contracting States. The Chicago Convention in its Article 33 stipulates that each contracting State recognize the validity of the certificates of airworthiness and licenses issued by other contracting States as long as they meet the minimum standards of the ICAO. Consequently, it is submitted that the unilateral action of the USA, China, Mongolia, Australia, and the Philippines issuing the FOAC to the aircraft of other States is against the Convention. It is worry some that this breach of international law is likely to be followed by the European Union which is believed to be in preparation for its own unilateral application. The ICAO established by the Chicago Convention to be in charge of safe and orderly development of the international civil aviation has been in hard work to both upgrade and emphasize the safe operation of aircraft. As the result of these endeavors, it prepared a new Annex 19 to the Chicago Convention with the title of "Safety Management" and with the applicable date 14 November 2013. It is this Annex and other ICAO documents relevant to the safety that the contracting States to the Chicago Convention have to observe. Otherwise, it is the economical burden due to probable delay in issuing the FOAC and bureaucracies combined with many different paperworks and regulations depending on where the aircraft is flown. It is exactly to avoid this type of confusion and waste that the Chicago Convention aimed at when it was adopted in 1944. The State of the operator shall establish a system for both the certification and the continued surveillance of the operator in accordance with ICAO SARPs to ensure that the required standards of operations are maintained. Certainly the operator shall meet and maintain the requirements established by the States in which it operate. The authority of a State stops where the authority of another State intervenes or where the former has yielded its power by an international agreement for the sake of international cooperation. Hence, it is not within the realm of the State to issue FAOC towards foreign operators for the reason that these foreign operators are flying in and out of the State. Furthermore, there are other safety audits such as ICAO USOAP, IATA IOSA, FAA IASA, and EU SAFA that assure the safe operation of the aircraft, but within the limit of their power and in compliance with the ICAO SARPs. If the safety level of any operator is not satisfactory, the operator could be banned to operate in the contracting States with watchful eyes until the ICAO SARPs are met. This time-honoured practice has been applied without any serious problems. Besides, we have the new Annex 19 to strengthen and upgrade with easy reference for contracting States. We don't have no reason to introduce additional burden to the States by unilateral actions of some States. These actions have to be corrected. On the other hand, when it comes to the carriage of the Personal or Pilot Log Book, the Korean regulation requiring it is in contrast with other relevant provisions of USA, USOAP, IOSA, and SAFA. The Chicago Convention requires in its Articles 29 and 34 only the carriage of the Journey Log Book and some other certificates, but do not mention the Personal Log Book at all. Paragraph 5.1.1.1 of Annex 1 to the Chicago Convention even makes it clear that the carriage in the aircraft of the Personal Log Book is not required on international flights. The unique Korean regulation in this regards giving the unnecessary burden to the national flag air carriers has to be lifted at once.

  • PDF

Legal Issues on the Collection and Utilization of Infectious Disease Data in the Infectious Disease Crisis (감염병 위기 상황에서 감염병 데이터의 수집 및 활용에 관한 법적 쟁점 -미국 감염병 데이터 수집 및 활용 절차를 참조 사례로 하여-)

  • Kim, Jae Sun
    • The Korean Society of Law and Medicine
    • /
    • v.23 no.4
    • /
    • pp.29-74
    • /
    • 2022
  • As social disasters occur under the Disaster Management Act, which can damage the people's "life, body, and property" due to the rapid spread and spread of unexpected COVID-19 infectious diseases in 2020, information collected through inspection and reporting of infectious disease pathogens (Article 11), epidemiological investigation (Article 18), epidemiological investigation for vaccination (Article 29), artificial technology, and prevention policy Decision), (3) It was used as an important basis for decision-making in the context of an infectious disease crisis, such as promoting vaccination and understanding the current status of damage. In addition, medical policy decisions using infectious disease data contribute to quarantine policy decisions, information provision, drug development, and research technology development, and interest in the legal scope and limitations of using infectious disease data has increased worldwide. The use of infectious disease data can be classified for the purpose of spreading and blocking infectious diseases, prevention, management, and treatment of infectious diseases, and the use of information will be more widely made in the context of an infectious disease crisis. In particular, as the serious stage of the Disaster Management Act continues, the processing of personal identification information and sensitive information becomes an important issue. Information on "medical records, vaccination drugs, vaccination, underlying diseases, health rankings, long-term care recognition grades, pregnancy, etc." needs to be interpreted. In the case of "prevention, management, and treatment of infectious diseases", it is difficult to clearly define the concept of medical practicesThe types of actions are judged based on "legislative purposes, academic principles, expertise, and social norms," but the balance of legal interests should be based on the need for data use in quarantine policies and urgent judgment in public health crises. Specifically, the speed and degree of transmission of infectious diseases in a crisis, whether the purpose can be achieved without processing sensitive information, whether it unfairly violates the interests of third parties or information subjects, and the effectiveness of introducing quarantine policies through processing sensitive information can be used as major evaluation factors. On the other hand, the collection, provision, and use of infectious disease data for research purposes will be used through pseudonym processing under the Personal Information Protection Act, consent under the Bioethics Act and deliberation by the Institutional Bioethics Committee, and data provision deliberation committee. Therefore, the use of research purposes is recognized as long as procedural validity is secured as it is reviewed by the pseudonym processing and data review committee, the consent of the information subject, and the institutional bioethics review committee. However, the burden on research managers should be reduced by clarifying the pseudonymization or anonymization procedures, the introduction or consent procedures of the comprehensive consent system and the opt-out system should be clearly prepared, and the procedure for re-identifying or securing security that may arise from technological development should be clearly defined.

The Significance of Registration Convention and its Future Challenges in Space Law (등록협약의 우주법상 의의와 미래과제에 관한 연구)

  • Kim, Han-Taek
    • The Korean Journal of Air & Space Law and Policy
    • /
    • v.35 no.2
    • /
    • pp.375-402
    • /
    • 2020
  • The adoption and entering into force of the Registration Convention was another achievement in expanding and strengthening the corpus iuris spatialis. It was the fourth treaty negotiated by the member states of the UNCOPUOS and it elaborates further Articles 5 and 8 of the Outer Space Treaty(OST). The Registration Convention also complements and strengthens the Article 11 of the OST, which stipulates an obligation of state parties to inform the UN Secretary-General of the nature, conduct, locations, and results of their space activities in order to promote international cooperation. The prevailing purposes of the Registration Convention is the clarification of "jurisdiction and control" as a comprehensive concept mentioned in Article 5 8 of the OST. In addition to its overriding objective, the Registration Convention also contributes to the promotion and the exploration and use of outer space for peaceful purposes. Establishing and maintaining a public register reduces the possibility of the existence of unidentified space objects and thereby lowers the risk such as, for example, putting the weapons of mass destruction secretly into orbit. And furthermore it could serve for a better space traffic management. The Registration Convention is a treaty established to implement Article 5 of OST for the rescue and return of astronaut in more detail. In this respect, if OST is a general law, the Registration Convention would be said to be in a special law. If two laws conflict the principle of lex specialis will be applied. Countries that have not joined the Registration Convention will have to follow the rules concerning the registration of paragraph 7 of the Declaration by the United Nations General Assembly resolution 1721 (X V I) in 1961. UN Resolution 1721 (XVI) is essentially non-binding, but appears to have evolved into the norm of customary international law requiring all States launching space objects into orbit or beyond to promptly provide information about their launchings for registration to the United Nations. However, the nature and scope of the information to be supplied is left to the discretion of the notifying State. The Registration Convention is a treaty created for compulsory registration of space objects by nations, but in reality it is a treaty that does not deviate from existing practice because it is based on voluntary registration. With the situation of dealing with new problems due to the commercialization and privatization of the space market, issues related to the definition of a 'space object', including matter of the registry state of new state that purchased space objects and space debris matter caused by the suspension of space objects launched by the registry state should be considered as matters when amendments, additional protocols or new Registration Convention are established. Also the question of registration of a flight vehicle in the commercial space market using a space vehicle traveling in a sub-orbital in a short time should be considered.

Re-evaluation of Cultural Heritage Preservation Committee Activities in 1961 (1961년 문화재보존위원회 활동 재평가)

  • OH Chunyoung
    • Korean Journal of Heritage: History & Science
    • /
    • v.57 no.2
    • /
    • pp.144-166
    • /
    • 2024
  • The Cultural Heritage Committee is an important organization that has been deliberating on important matters related to the preservation of cultural properties in the Republic of Korea for more than 60 years since 1962. The Cultural Heritage Preservation Committee was active in 1961, which was a short period of about a year, but the minutes prepared at the time confirmed that it had the following meanings. First of all, legally, it was meaningful in that the concept of cultural property or intangible cultural property was used for the first time in Korea in laws and regulations on the term of office of professional members. These matters became the basis for the operation of the current Cultural Heritage Protection Act and the Cultural Heritage Committee. The following confirms that, unlike previously known activities, they were active despite political upheaval at the time. In spite of rapid regime change at the time, the committee had no change in its members, and the meetings continued without interruption. At that time, there was an exclusive relationship between different groups in relation to the preservation of cultural heritage, and this relationship was confirmed by the minutes that disappeared with the establishment of the Cultural Heritage Management Bureau, which integrated these groups. Finally, the form of the minutes prepared then shows the form of documentation at the time, where it is confirmed that the traditional documentation format is changing into a new form. It can be good research material in terms of modern and contemporary bibliography. As discussed earlier, the Cultural Heritage Conservation Committee of 1961 has historical significance in terms of legal and actual activities. The reason why the committee's activities were low valued is presumed to be that the minutes and related documents prepared at the time were not organized well due to the lack of a related administrative system. The minutes of the Cultural Heritage Conservation Committee record various facts about cultural heritage policies and decisions at that time. Therefore, analysis and research on these contents can reveal more facts about the cultural heritage policies and perceptions of that time.