• Title/Summary/Keyword: 보호의무

Search Result 387, Processing Time 0.026 seconds

Attorney's Duty to Protect Personal Information (변호사의 개인정보 보호의무)

  • Hah, Jung Chul
    • Journal of Digital Convergence
    • /
    • v.12 no.7
    • /
    • pp.1-10
    • /
    • 2014
  • In February 2014 Korean Bar Association has amended Professional Ethics Code as to stipulate attorney's duty to protect personal information. While existing Korean law and Professional Ethics Code has made attorney to keep client's confidential information, attorney's newly promulgated obligation has its meaning in that personal information of subject other than client is not protected through confidentiality rules, given that confidentiality obligation is interpreted to protect only client's information relating to representation. Moreover, duty to protect personal information deals with not only disclosure and use of information, which confidentiality rules is about, but also collection and retention process, access to and correction and care of information and even destruction of information. Amid unprecedented theft of personal data in several national banks and other serious leakage reported recently, this paper is going to contemplate the scope and application of the duty to protect personal information with hope to contribute to starting discussion on it.

정보통신서비스제공자의 정보보호의무

  • 박영우
    • Review of KIISC
    • /
    • v.12 no.4
    • /
    • pp.88-93
    • /
    • 2002
  • 오늘날 인터넷 등 정보통신망의 이용이 보편화 되면서 우리는 바야흐로 정보 및 정보시스템이 없는 생활을 생각할 수 없는 이른바 정보사회에 살고 있다. 정보사회에서는 정보가 중요한 생산수단이 되며 또 경제적 가치를 갖는다. 따라서 정보를 제대로 보호하고 또 정보가 안전하게 처리, 이용될 수 있는 환경을 마련하는 것이 중요한 국가, 사회적 과제가 된다. 이에 각 정보주체가 자신의 정보와 시스템을 내, 외부의 위협으로부터 보호할 일차적 책임을 진다. 그러나 정보통신서비스제공자는 자신의 정보와 시스템을 보호하는 정보주체로서의 일차적 책임 뿐만 아니라, 기업이나 개인과 같이 타인의 정보통신을 매개하는 사업자로서 송수신 또는 처리되는 타인의 정보를 적절히 보호하여야 할 의무가 있다. 현행 법률을 중심으로 정보통신서비스제공자의 정보보호의무의 개념과 성격 그리고 그 구체적인 내용을 살펴보았다.

Liability for Damages Due to Violation of Supervisory Duty by the Legal Guardian of the Mental Patient (정신질환자 보호의무자의 감독의무 위반으로 인한 손해배상책임 -대법원 2021. 7. 29. 선고 2018다228486 판결의 검토-)

  • Dayoung Jeong
    • The Korean Society of Law and Medicine
    • /
    • v.23 no.4
    • /
    • pp.133-170
    • /
    • 2022
  • Supreme Court 2018Da228486, on July 29, 2021, ruled Article 750 of the Civil Act as the basis for liability for damages due to the violation of the supervisory duty of the responsible mental patient. This judgment recognizes that the legal guardian is liable for tort due to neglect of the responsibility of supervision under Article 750 of the Civil Act because the duty of protection bears the duty of supervision over the mental patient under the law. However, unlike the case of Article 755 Paragraph 1, which explicitly requires a legal obligation to supervise, Article 750 only stipulates general tort liability. Thus, to admit tort liability under Article 750, it is not necessary that the basis of the supervisory duty by the law. In this case, the supervisory duty may also be acknowledged according to customary law or sound reasoning. The duty of supervision of a legal guardian is not a general duty to prevent all consequences of the behavior of a mental patient but a duty within a reasonably limited scope. Therefore, the responsibility of the burden of care should be acknowledged only when the objective circumstances in which it is appropriate to hold the legal guardian for the acts of the mental patient are admitted. Under the Act on the improvement of mental health and the support for welfare services for mental patients, a legal guardian cannot even be granted the supervisory duty to prevent the mental patient from harming others.

Class-based Dynamic Separtion of Duty Model for Ensuring Secrecy among Tasks (작업간 비밀성을 보장하는 클래스 기반의 동적 의무분리 모델)

  • 지희영
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.10 no.2
    • /
    • pp.79-92
    • /
    • 2000
  • 기업환경에서 정보의 무결성은 중요한 보안 요구사항이다 의무분리 정책의 목적은 정보의 무결성을 필요로 하는 연산들을 여러 역할이나 사용자에게 분산시킴으로써 조직 내에서 관리하는 무결성 침해 가능성을 최소화하는 것이며 이것은 상업적 응용분야에서 중요하다. 전통적인 임의적 접근제어와 강제적 접근제어 정책의 대안인 역할 기반의 접근제어 기법은 응용에 따라 보호 객체들에 대한 접근을 역할들로 분류하여 단순한 권한 관리를 제공하며 의무분리 정책을 시행하기에 적합하다. 본 논문에서는 역할 기반의 접근제어에서 기존의 의무분리 안전성 조건의 취약성을 보완하여 응용 프로그램의 실행단위인 클래스에 기반한 개선된 동적 의무분리 기법을 제안하고 상호 배타적인 부트랜잭션들을 포함하고 있는 중첩-트랜잭션을 대상으로 이를 적용한다. 또한 여러 작업들이 동시에 실행되는 환경에서 감염된 트로이언 목마에 의해 발생될수 있는 정보의 유출 문제를 해결하고자 작업간 정보의 비밀성을 보장하는 동적의무분리 모델을 제시한다. 제안한 모델은 기존의 무결성 보장을 위해 제시되었던 Clark-Wilson 모델과 다른 의무분리 모델에 비해 관리가 용이하며, 동적으로 유지 관리되어야 하는 데이터의 양이 적고 객체 접근 확인 절차가 단순하여 구현방법이 용이한 장점이 있다 그리고 기존 의무분리 모델에서 고려되지 않은 병렬 수행 환경에서 작업 사이의 정보 유출 문제를 해결한다.

The Fiduciary Duties of Doctor in Clinical Trials (임상시험에서 의사의 선량한 관리자의 주의의무)

  • Lee, Jiyoun
    • The Korean Society of Law and Medicine
    • /
    • v.21 no.2
    • /
    • pp.163-207
    • /
    • 2020
  • Korea has been positioned as the leading country in the industry of clinical trials as the clinical trail of Korea has developed for the recent 10 years. Clinical trial has plays a significant role in the development of medicine and the increase of curability. However, it has inevitable risk as the purpose of the clinical trial is to prove the safety and effectiveness of new drugs. Therefore, the clinical trial should be controlled properly to protect the health of the subjects of clinical trial and to ensure that they exercise a right of self-determination. In this context, the fiduciary duties of doctors who conduct clinical trials is especially important. The Pharmaceutical Affairs Act and the relevant regulations define several duties of doctors who conduct clinical trials. In particular, the duty to protection of subjects and the duty to provide information constitute the main fiduciary duties to the subjects. Those are essentially similar to the fiduciary duties of doctors in usual treatment from the perspective of the values promoted by the law and the content of the law. Nonetheless, clinical trials put more emphasis on the duties to provide explanation than in usual treatment. Further research and study are required to establish the concrete standard for the duty of care. However, if the blind pursuit of higher standards for the duty of care or to pass the burden of proof to doctors may result in disrupting the development of clinical trials, limiting the accessibility of patients to new treatment and even violating the principle of sharing damage equally and properly. In addition to these duties, the laws of clinical trials define several duties of doctors. Any decision on whether the violation of the law constitutes the violation of the fiduciary duty and justifies the demand for compensation of damages should be based on whether relevant law aims to protect the safety and benefit of subjects, even if in an incidental way, the degree to which such violation breaches the values promoted by the law and the concrete of violation of benefit of law, the detailed acts of such violation. The legal interests of the subjects can be protected effectively by guaranteeing compliance with those duties and establishing judicial and administrative controls to ensure that the benefit of subjects are protected properly in individual cases.

A Study on the Legislative Guidelines for Airline Consumer Protection (항공소비자 보호제도의 입법방향)

  • Lee, Chang-Jae
    • The Korean Journal of Air & Space Law and Policy
    • /
    • v.32 no.1
    • /
    • pp.3-51
    • /
    • 2017
  • From a historical point of view, while the Warsaw Convention was passed in 1924 to regulate the unified judicial responsibility in the global air transportation industry, protection of airline consumers was somewhat lacking in protecting air carriers. In principle, the air carrier does not bear any obligation or liability when the aircraft is not operated normally due to natural disasters such as typhoon or heavy snowfall. However, in recent years, in developed countries such as the US and Europe, there has been a movement in which regulates the air carriers' obligation to protect their passengers even if there is no misconduct or negligence. Furthermore, the legislation of such advanced countries imposes an obligation on the airlines to compensate the loss separately from damages in case the abnormal operation of the aircraft is not caused by force majeure but caused by their negligence. Under this historical and international context, Korea is also modifying the system of aviation consumer protection by referring to other foreign legislation. However, when compared with foreign countries, our norm has a few drawbacks. First, the airline's protection or care obligations are mixed with the legal liability for damages in the provision, which seems to be due to the lack of understanding of the airline's passenger protection obligation. The liability for damages, which is governed by the International Convention or the Commercial Act, shall be determined by judging the cause of the airline's liability in respect of the damage of the individual passenger in the course of the air transportation. However, the duty to care and the burden for compensation shall be granted to all passengers who feel uncomfortable with the abnormal operation regardless of the cause of the accident. Also, our compensation system for denied boarding due to oversale is too low compared to the case of foreign countries, and setting the compensation amount range differently based on the time for the re-routing is somewhat unclear. Regarding checked-baggage claim, it will be necessary to refund the fee only from the fact that the baggage is delayed without asking whether there is any damage occurred from the delayed baggage. This is the content of the duty to care, which is different from the current Commercial Act or the international convention, in which responsibility is different depending on whether the airline takes all the necessary measures in order to prevent delaying of the baggage. The content of force majeure, which is a requirement for exemption from the obligation to care passengers on the airplane, shall be reconsidered. Maintenance for safe navigation is not considered to be included in force majeure, and connection to airplanes, airport conditions are disputable. According to the EC Regulation, if the cause of the abnormal operation of the airline is force majeure, the airline's compensation obligation is exempted but the duty to care of airline company is still meaningful. Furthermore, even if the main role of aviation consumer protection is on an airline, it is the responsibility of government agencies to supervise the fulfillment of such protection obligations. Therefore, it is necessary for the Korean government to actively take measures such as enforcing incentives for airlines that faithfully fulfill their obligation to care and imposed penalties on the contrary.

  • PDF

A Design for Dynamic Separation of Duty in Role-Based Access Control Systems (역할 기반의 접근제어 시스템에서 동적 의무분리 만족을 위한 설계 방법)

  • Ji, Hee-Young;Park, Seog
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 1999.10a
    • /
    • pp.320-322
    • /
    • 1999
  • 역할 기반의 접근제어 시스템은 응용에 따라 보호 객체들에 대한 접근을 역할들로 분류하여 정형 트랜잭션과 데이터의 무결성을 보장하는 의무분리의 원리로 정보를 처리하는 시스템으로 편리하고 단순한 권한 관리를 제공한다. 본 논문에서는 기업 환경에 적합한 역할 기반의 접근제어 시스템에서 데이터베이스 내에 저장된 데이터에 대한 권한 없는 접근, 고의적인 파괴 및 변경을 야기하는 사고로부터 데이터베이스를 보호하기 위해 정보의 무결성 보장을 위한 의무분리의 원리를 제안한다. 그리고 제안된 원리를 기반으로 하여 적용 대상으로 상호 배타적인 부트랜잭션들을 포함하고 있는 중첩 트랜잭션을 생각해 보았으며, 여기에 동적 의무분리 요구사항을 만족시키기 위해서 주체, 세션 기반에서 새롭게 해석하였다. 이 기법은 시스템 운영의 유연성을 향상시키고, 역할 관리를 단순화시키는 장점을 가진다. 또한 여러 트랜잭션들이 동시에 실행되는 환경하에 정보의 무결성 유지를 위해서 본 논문에서 제안한 의무분리 기법을 적용하였다. 이때 감염된 트로이언 목마에 의해 발생될 수 있는 정보의 유출문제를 해결하고자 의무분리를 위한 격자 구조를 설계하고 이를 바탕으로 해석하였다.

  • PDF

Perceptual Differences between Managers and Practitioners on Competencies of Information Security Consultants (정보보호컨설턴트 역량에 대한 관리자와 실무자의 인식차이)

  • Kim, Se-Yun;Kim, Tae-Sung
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.26 no.1
    • /
    • pp.227-235
    • /
    • 2016
  • As various measures of law observance obligations such as mandatory obligation of privacy impact assessment (PIA) for public institutions and authorization of information security management system (ISMS) are put into practice, increase in demand for information security consulting and securement of information security consultants are emerging as a major issue. The purpose of this study is to empirically investigate what core competencies information security consultants should possess and how much they actually possess them. By analyzing the differences in perception between practitioners and managers on core competencies, this study understands difference of views between the two groups and suggests ideas for cultivation of information security consultants.

A Study on The Improved Selection Method of Information Security Management System(ISMS) Certification Object Applying SMART Technic (SMART 평가법을 활용한 정보보호 관리체계(ISMS) 인증 의무대상자 선정 기준 개선 방안에 관한 연구)

  • Jang, Sang Soo
    • Convergence Security Journal
    • /
    • v.14 no.4
    • /
    • pp.85-94
    • /
    • 2014
  • Information Security Check System was Introduced in 2004, higher than in 2013, the effectiveness of Information Security Management System(ISMS) certification scheme was to unification. This is incident to the Internet affecting people's lives telecommunications service provider to target accountability because, considering the subject's duty selection criteria need to be clarified. however, Obligations under the current legislation, subject selection criteria applying the law itself is ambiguous, the result being a significant problem. Moreover, the regulatory system of certification systems subjects, although selection criteria should be clear and objectively not the obligation not to distrust the system itself and the subject was raised many issues for you. In this study, with SMART Technic in order to improve this certification you can easily determine whether a medical person authorized to develop a model for selection of medical subjects, The developed model is verified through empirical ways to improve the system by presenting the system to help, to secure the effectiveness.