• Title/Summary/Keyword: ISO22301

Search Result 17, Processing Time 0.023 seconds

A Study on Activation of Authentication by Comparing ISMS and ISO22301 (ISMS와 ISO22301 비교를 통한 인증 활성화 방안)

  • Lee, Sun-Won;Lee, Sung-Yeop;Cheung, Chong-Soo
    • Proceedings of the Korean Society of Disaster Information Conference
    • /
    • 2017.11a
    • /
    • pp.203-204
    • /
    • 2017
  • 본 연구에서는 국내의 정보보호관리시스템(ISMS)와 국외의 비즈니스연속성관리시스템(ISO22301)의 비교를 통해 ISO22301의 인증 활성화 방안을 모색하였다. 또한, ISMS와 ISO22301의 정의 및 필요성, 인증, 인증혜택 등을 알아보고 ISO22301 인증 활성화 방안에 대해 연구하였다. 연구 결과 ISMS 인증은 의무이고 인증 혜택도 전문업체 지정 시 가산점, 입찰 과제선정 평가 시 가산점 부여 등 명확한 혜택이 있었으나 ISO22301은 조직의 명성강화 브랜드 보호 등 인증의 혜택보다는 인증의 효과적인 측면이 강하므로 ISMS의 인증 중 입찰 과제선정 평가 시 가산점 부여, 정보보호관련 보험 가입 시 할인 혜택 등 명확한 혜택을 부여한다면 현재 ISO22301 인증 보다 활성화 될 것으로 판단한다.

  • PDF

The Effects of ISO 22301 and ISMS Certification Requirements on Business Performance: Focusing on Mediation of Corporate Culture (ISO 22301과 ISMS 인증 요구사항이 기업성과에 미치는 영향 : 기업문화 매개를 중심으로)

  • Lee, Sun-won;Cheung, Chong-Soo
    • Journal of the Society of Disaster Information
    • /
    • v.16 no.3
    • /
    • pp.558-576
    • /
    • 2020
  • Purpose: This study wanted to empirically study the effects of ISO 22301 and ISMS certification requirements on Business Performance. Method: For research, a survey was conducted on ISO 22301 and ISMS-certified companies to collect data and use SPASS18 and AMOS18 for statistical analysis. Results: Verification of the hypotheses through the questionnaire demonstrated that BCP, BCM operation, management, and access control of ISO 22301 and ISMS certification requirements, including BIA, risk assessment, BCP, BCM, BCM operation, management, and access security requirements, affect the enterprise's performance (quality improvement, customer satisfaction, financial performance) through the intermediation of the enterprise culture, and the feasibility of the survey paper is high. Conclution: This study has derived the impact of ISO 22301 and ISMS certification requirements on business performance, and based on this, it is deemed necessary to present improvements to ISO 22301 and ISMS certification, and to study future ISO 22301 certification activation and domestic certification, BCMS.

A Study on an Effective Countermeasure for Certification of Development of Disaster Management International Standards - Focus on ISO 22301 and Top Company Certification System in the Reduction Law - (재난관리 국제표준 개발에 대한 인증의 효율적인 대응 방안에 관한 연구 - ISO 22301과 경감법의 우수기업인증제도를 중심으로 -)

  • Cheung, Chong Soo
    • Journal of Korean Society of Disaster and Security
    • /
    • v.5 no.1
    • /
    • pp.49-56
    • /
    • 2012
  • As ISO22301 (Societal security-Business continuity management systems-Requirements) related to BCM (BCP) was established in May 2012, KS A ISO22301 (National Standards) will be enacted at the end of the year. Foreign certification agencies at home and abroad are expanding their business, accordingly. And it is expected that there will be a trade barrier such as a demand for compliance with the Standards in the trade between companies. Hence I am trying to find the countermeasures of domestic companies and ways to invigorate Top Company Certification System in the reduction law (The Legislative bill on the support of voluntary activities of enterprises for disaster reduction).

A Study on the Effect of Business Continuity Management System (ISO 22301) on the Reduction of Serious Industrial Accidents in the Automobile Parts Manufacturing Industry (자동차부품제조업에서 비즈니스연속성경영시스템(ISO 22301)이 중대산업재해 감소에 미치는 영향 연구)

  • Choi, Jong-Youb;Chong, Cheung-Soo;Choi, Suk-Chan
    • Proceedings of the Korean Society of Disaster Information Conference
    • /
    • 2022.10a
    • /
    • pp.275-276
    • /
    • 2022
  • 본 연구에서는 비즈니스 연속성 경영시스템(ISO 22301)이 현재 선진국에 진입해 있는 대한민국 사회에 당면과제이며 이슈가 되고 있는 중대산업재해 감소에 미치는 영향을 자동차 제조업을 중심으로 분석하고자 한다. ISO 22301은 2012년 처음으로 HLS (High Level Structure)작성되었으며 이를 통하여 조직의 비즈니스에 대하여 비즈니스 연속성을 수립하여 조직에서 발생할 수 있는 비즈니스 중단에 대비하고 있다. 또한 중대재해는 「산업안전보건법」상 산업재해 중 사망자가 1명 이상 발생하거나, 6개월 이상 치료가 필요한 부상자가 2명 이상 발생하거나, 동일한 유해요인으로 직업성 질병자가 1년에 3명 이상 발생한 경우를 말한다(법제처, 2021).

  • PDF

Conformance Study for BCMS Change Management Operations - Focus on ISO 22301 and ISO 45001 Requirements - (BCMS 변경관리 운용에 대한 적합성 연구 - ISO 22301과 ISO 45001 중심으로 -)

  • Kang, Shin-Woo;Kim, Duck-Ho;Cheung, Chong-Soo
    • Proceedings of the Korean Society of Disaster Information Conference
    • /
    • 2023.11a
    • /
    • pp.165-166
    • /
    • 2023
  • BCMS의 변경관리에 대한 요구사항은 ISO 22301 구성체계의 기획단계인 6.3 변경의 기획에서 수행하고, 기업재난관리표준 구성체계에서 기획단계인 3.5.5 문서화된 정보에서 수행하도록 규정하였으며, 이는 모두가 P-D-C-A 운용 모델의 Plan 단계에 해당된다. 이러한 구성체계는 BCP를 최초에 수립하는 단계에서는 적합하지만, BCP가 수립(제정)되어 운용단계에서 발생되는 변경사항을 처리하는데는 많은 문제점이 도출된다. 따라서 재난 및 안전관리 분야에 해당하는 유사제도의 요구사항을 대상으로 비교분석을 통하여 도출된 개선방안을 연구결과로 제시하고자 한다. BCP를 수립하는 과정에서 발생하는 보완사항은 변경관리 절차에 포함하지 않고, BCP가 수립되어 운용단계에서 발생되는 변경사항만 변경관리 절차에 포함하여 관리하며, P-D-C-A 운용 모델의 Act 단계에서 수행하는 것이 적합하다.

  • PDF

A Study on the Development of Evaluation Criteria in the Business Continuity Management System(Focusing on the 'Understanding the organization' in Plan of the ISO 22301) (업무연속성관리체계(BCMS) 평가지표 개발에 관한 연구(ISO 22301 Plan의 '조직의 이해'를 중심으로))

  • YoungKyun Jung;ChongSoo Cheung
    • Journal of the Society of Disaster Information
    • /
    • v.19 no.2
    • /
    • pp.363-371
    • /
    • 2023
  • Purpose: This paper aims to develop evaluation criteria of Plan- 'Understanding the Organization' in the PDCA(Plan-Do-Check-Act) requirements of ISO 22301 which is a global standard in the area of BCMS(Business Continuity Management System). Method: The group of 20 experts in the BCMS checked for the validity of the evaluation criteria of Plan- 'Understanding the Organization' by the modified Delphi technique and relative importance are surveyed by the group. Results: As a result, the 12 evaluation criteria with relative importance that can be applied for BCMS evaluation of the organizations are developed and proposed. Conclusion: In order to introduce a quantitive evaluation in the BCMS, it was concluded that evaluation criteria need to be chosen and given relative importance, thus the criteria with the importance could be used for effective evaluation

Design of Operation Management Check Items of Efficient Information System for Improvement of Business Continuity based on ISO 22301 (ISO22301 기반 비지니스 연속성 증대를 위한 효율적인 정보시스템 운영감리 점검항목 설계)

  • Joo, Nak Wan;Kim, Dong Soo;Kim, Hee Wan
    • Journal of Service Research and Studies
    • /
    • v.9 no.2
    • /
    • pp.31-40
    • /
    • 2019
  • In this paper, we have studied the improvement of operational control for the enhancement of business continuity of information system becoming more important with the development of information technology such as big data, Iot, and artificial intelligence. The operational management and audit guidance of the current information system, which is coming in the fourth industrial age, where various services, data and industries are converged, is based on the existing general information system pattern and needs to be improved. The provision of services at fixed times is linked to the survival of enterprises and countries and serves as a key element. Therefore, it is necessary to study the application of optimized check items of the operation audits to minimize the service interruption damage of the information system and to provide the stable service in terms of business continuity management. To accomplish this, the check items presented in the operational control of the information system were derived by combining the PDCA step contents and 8 resource requirements provided in ISO 22301. From the point of view of increasing the business continuity according to the derivation criteria of the inspection items, the operational inspection check items were derived by exemplifying the improved check items and review items of the information system operation audit and the products to be checked during the operational audit. The check items were divided into management audit improvement check items for service continuity management, and operational audit improvement check items for performance and availability management. The average score of the IT professionals' survey on the suitability of the proposed checklist was 4.63, which was concluded to be appropriate.

A study on the guidelines for the Military Continuity of Operations Plan (군 COOP전략 지침 수립을 위한 연구)

  • Park, Chanyoung;Park, Seongsu
    • The Journal of the Convergence on Culture Technology
    • /
    • v.8 no.1
    • /
    • pp.291-298
    • /
    • 2022
  • Unexpected massive disasters have occurred around the world, causing enormous socio-economic damage. The military has long been enacting laws, organizing organizations and establishing systems for crisis and disaster management, but it did not consider the situation when military essential functions were suspended due to unpredictable and massive disasters. With the September 11 terrorist attacks, the U.S. military has developed COOP strategy aimed at continuing military essential functions in all crisis, and is contributed to national continuity by ensuring uninterrupted national security functions. Korean military has established a crisis and disaster management system, but focuses on managing and controlling disasters and crisis situations. Korean military needs a system to guarantee military essential functions even in national crisis beyond its management capabilities. In this study, We compared and reviewed the U.S. administration and military COOP guidelines and directives, ISO22301 international standards., and developed planning guidelines suitable for the Korean military situation by responding to detailed items based on ISO22301. In particular, the U.S. military(DoD, Army, Navy, Air Force) COOP guidelines were drawn and incorporated into the guidelines(such as protection and succession of command authority, the fulfillment of essential functions and operational security, etc.). The planning guidelines are expected to be used as reference materials for the introduction of COOP systems in the military and the establishment of plans in the future.

Trend Analysis and Activating Study on International Societal Security Standard for Chemical Accidents Prevention (화학사고 예방을 위한 재난안전분야 국제표준 동향분석 및 활성화 연구)

  • Yoo, Byung Tae;Yang, Jae Mo;Oh, Keum Ho
    • Journal of Korean Society of Disaster and Security
    • /
    • v.6 no.2
    • /
    • pp.9-14
    • /
    • 2013
  • Major accidents such as typhoon, tsunami, and chemical accidents have been continuously occurred. In this environment, Technical Commitment (TC) related to disaster management part in the International Organization for Standardization (ISO) concentrates their efforts to enact the business continuous management in emergency situation for international standard. As a result of TC223, four international standards are enacted in 2011, 2012. In the Korean industrial standard, two international standard (ISO22300, ISO22301) out of four standards were enacted in 2012. This study analyzes a recent trend and proposes a method activating of international societal security standard for chemical accidents. Disaster certificate system for developing disaster safety industry is suggested. We hope each related organization could develop our disaster safety management policy and research based on this study.