• Title/Summary/Keyword: Information Asset Protection

Search Result 49, Processing Time 0.023 seconds

Analysis of Economic Effects for Information Security Industry in Korea (정보보호 산업의 경제적 파급효과 분석)

  • Jeong, Woo-Soo;Min, Kyoung-Sik;Chai, Seung-Woan
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.24 no.2
    • /
    • pp.385-396
    • /
    • 2014
  • With development of Information Security industry and recognizing value of information as an asset, demand for information protection is foreseen to be expanding gradually. The Information Security industry in this paper defines as an industry where relative products as well as consulting services are developed, produced, and distributed. This study reclassifies sub-sectors of the Information Security industry based on the definition of product and services defined above, and it uses the RAS technique to broaden a scope of an input-output table to include the Information Security industry with purpose of analyzing economic spill-over effects industry will encounter during 2013~2017. Results show that investment in the Information Security industry during 2013-2017 induces total economic outputs to KRW 3,206.9 billion and is expected to employ additional 27,406 workforce.

Composition and Policy Direction of Compensation Insurance Against Customer Information Infringements in Financial Transactions (금융거래 고객정보 침해사고 보상보험의 구성 및 정책방향)

  • Kim, Jong Hwan;Lim, Jong In
    • The Journal of Society for e-Business Studies
    • /
    • v.19 no.3
    • /
    • pp.1-21
    • /
    • 2014
  • Personal information is a requisite for financial transactions as well as a core asset of financial companies. However, as a side effect of the information society, personal information infringements have emerged as significant social risks, causing realized loss to individuals and companies. This study analyzes results of financial and emotional loss in terms of consumer loss and also presents usefulness of insurance in order to minimize such actual damages as a means of risk transfer. In addition, this study investigates components and premium calculation principles of compensation insurance against personal information invasion and finally presents policies to activate these insurance product. As a method of risk management, insurance not only is a useful tool to guarantee consumer protection and companies' financial soundness simultaneously but also provides a basis of quantitative measurement of IT risks.

Real Estate Industry in the Era of Technology 5.0

  • Sun Ju KIM
    • The Journal of Economics, Marketing and Management
    • /
    • v.11 no.6
    • /
    • pp.9-22
    • /
    • 2023
  • Purpose: This paper aims to suggest ways to apply the leading technologies of Industry 5.0 to the housing welfare field, tasks for this, and policy implications. Research design, data, and methodology: The analysis method of this study is a literature study. The analysis steps are as follows. Technology trends and characteristics of Industry 5.0 were investigated and analyzed. The following is a method of applying technology 5.0 in the industrial field. Finally, the application areas of each technology and the challenges to be solved in the process were presented. Results: The results of the analysis are 1) the accessibility and diffusion of technology. This means that all citizens have equal access to and use of the latest technology. To this end, the appropriate use of technology and the development of a user-centered interface are needed. 2) Data protection and privacy. Residential welfare-related technologies may face risks such as personal information leakage and hacking in the process of collecting and analyzing residents' data. 3) Stability, economic feasibility, and sustainability of the technology. Conclusions: The policy implications include: 1) Enhancing technology education and promotion to improve tech accessibility for groups like the low-income, rural areas, and the elderly, 2) Strengthening security policies and regulations to safeguard resident data and mitigate hacking risks, 3) Standardization of technology, 4) Investment and support in R&D.

Queueing Model for Traffic Loading Improvement of DDoS Attacks in Enterprise Networks (엔터프라이즈 네트워크에서 DDoS 공격의 부하 개선을 위한 큐잉 모델)

  • Ha, Hyeon-Tae;Lee, Hae-Dong;Baek, Hyun-Chul;Kim, Sang-Bok
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.15 no.1
    • /
    • pp.107-114
    • /
    • 2011
  • Today the company adopts to use information management method at the network base such as internet, intranet and so on for the speed of business. Therefore the security of information asset protection and continuity of business within company in relation to this is directly connected to the credibility of the company. This paper secures continuity to the certified users using queuing model for the business interruption issue caused by DDoS attack which is faced seriously today. To do this I have reflected overloaded traffic improvement process to the queuing model through the analysis of related traffic information and packet when there occurs DDoS attack with worm/virus. And through experiment I compared and analyzed traffic loading improvement for general network equipment.

Location Privacy Enhanced Routing for Sensor Networks in the Presence of Dormant Sources (휴면 소오스들이 존재하는 환경의 센서 네트워크를 위한 위치 보호 강화 라우팅)

  • Yang, Gi-Won;Lim, Hwa-Jung;Tscha, Yeong-Hwan
    • Journal of KIISE:Information Networking
    • /
    • v.36 no.1
    • /
    • pp.12-23
    • /
    • 2009
  • Sensor networks deployed in battlefields to support military operations or deployed in natural habitats to monitor the rare wildlifes must take account of protection of the location of valuable assets(i.e., soldiers or wildlifes) from an adversary or malicious tracing as well as the security of messages in transit. In this paper we propose a routing protocol GSLP(GPSR-based Source-Location Privacy) that is capable of enhancing the location privacy of an active source node(i.e., message-originating node) in the presence of multiple dormant sources(i.e., nodes lying nearby an asset whose location needs to be secured). Extended is a simple, yet scalable, routing scheme GPSR(greedy perimeter stateless routing) to select randomly a next-hop node with a certain probability for randomizing paths and to perform perimeter routing for detouring dormant sources so that the privacy strength of the active source, defined as safety period, keeps enhanced. The simulation results obtained by increasing the number of dormant sources up to 1.0% of the total number of nodes show that GSLP yields increased and nearly invariant safety periods, while those of PR-SP(Phantom Routing, Single Path), a notable existing protocol for source-location privacy, rapidly drop off as the number of dormant sources increases. It turns out that delivery latencies of GSLP are roughly less than two-fold of the shortest path length between the active source and the destination.

The Impact of IS Policy and Sanction Perceptions on Compliance Intention through Justice: The Role of Justice Sensitivity (정보보안 정책 및 제재 인식이 공정성을 통해 준수 의도에 미치는 영향: 공정 민감성의 역할)

  • In-Ho Hwang
    • The Journal of the Korea institute of electronic communication sciences
    • /
    • v.18 no.2
    • /
    • pp.337-348
    • /
    • 2023
  • As protecting organizations' information assets affects their substantiality, they are increasing their investments in policies, regulations, and technologies for systematic information asset management and protection. This study confirms the impact on information security(IS) compliance from the perspective of employees who apply IS policies to actual work. In particular, this study identifies mechanisms linked to IS policy awareness, sanction, justice, and IS compliance from the perspective of expanding deterrence theory. We applied 316 samples obtained from workers of organizations that applied IS policies and regulations to work and verified the relationship between mechanisms by using AMOS and SPSS packages. As a result of the verification, IS policy awareness had a positive effect on organization justice and compliance intention through the severity and clarity of sanctions. Individual justice sensitivity had a moderating effect on the cause and outcome of justice. The sanction-related mechanism presented in this study provides strategic implications for organizations that require active IS activities by insiders.

The Effect on the IS Role Stress on the IS Compliance Intention Through IS Self-determination: Focusing on the Moderation of Person-organization Fit (정보보안 역할 스트레스가 자기 결정성을 통해 준수 의도에 미치는 영향: 개인조직 적합성의 조절 효과)

  • Hwang, In-Ho
    • The Journal of the Korea institute of electronic communication sciences
    • /
    • v.17 no.2
    • /
    • pp.375-386
    • /
    • 2022
  • As information asset protection is recognized as an important management factor for organizations, organizations are increasing their investments in information security(IS) policies and technologies. However, strict application of IS may cause non-compliance behavior through IS stress on employees of the organization. Accordingly, this study suggests a mechanism by which employee stress affects IS compliance intentions through self-determination, and a method to reinforce IS compliance intentions through person-organization fit. We conducted an online survey of employees working at companies that adopted IS policies and tested hypotheses using 475 samples. First, as a result of analyzing the main effects of applying the structural equation model, role stress affected IS compliance intention through self-determination. Second, as a result of analyzing the moderating effect of applying Process 3.1, personal organization fit strengthened the relationship between self-determination and IS compliance intention. The research suggests a direction for achieving internal IS goals by confirming the influence of IS stress and behavioral causes of employees.

Analysis of Land Suitability and Ecological Environment Using GIS Focused on the Evaluation Model for Designating of Natural Ecological Preservation Zone (지리정보체계를 이용한 생태환경분석 및 적지분석: 자연생태계 보전지역 설정 및 평가 모형을 중심으로)

  • Lee, Myungwoo
    • Journal of Environmental Impact Assessment
    • /
    • v.6 no.2
    • /
    • pp.61-80
    • /
    • 1997
  • This study tried to propose the guidelines for the ecological preservation zoning in Korea. So some related laws and regulations were inspected, which were Natural Environment Preservation Act, Nature Park Act, Cultural Asset Conservation Act, Forest Act and Urban Planning Act. In these acts, I could find several concepts related to the ecosystem that are described as the protection area. But there aren't detailed and practical characteristics in those concepts. So for making the practical concept of ecosystem preservation, I considered Multiple Use Module, Wildlife habitat model, and Environmental evaluation model. Thorough this step, the process and methodology was established for evaluating and analysing. The potentiality of the GIS system was inspected. So the TM5 scene of the site was acquired and processed by ER-Mapper, Idrisi, Arc/Info and Arcview. And several digitized data were input by scanning and vecterizing. The Erdas format was mostly exchangeable to any program. The site is the Byonsan Peninsula National Park. The forest stand information and topographic data were digitized, types of which are forest year, DBH, density, slope, aspect etc. And also the watershed boundary, roads and paths, natural and cultural resources were mapped and analysed. Modelling of preservation suitability found the dispersed patterns for the best suitable zone through all the site. And the development potential areas were checked on downwatershed. This patterns are thought to result from the forest location for the wildlife habitat and the low altitude and no-steep slopes for developing. And Early warning system concept was introduced by overlapping these two patterns on the both potential area. As the conclusions, I proposed that the preservation zone be assigned according to the watershed unit as the main ecosystem zone. This main area should be linked by the eco-corridor through the point type eco-system. Finally, I thought the comprehensive information system should be established for making the rational and efficient decision making in natural area.

  • PDF

A Study on Developing the Compliance for Infringement Response and Risk Management of Personal Information to Realize the Safe Artificial Intelligence Services in Artificial Intelligence Society (지능정보사회의 안전한 인공지능 서비스 구현을 위한 개인정보 침해대응 및 위기관리 컴플라이언스 개발에 관한 연구)

  • Shin, Young-Jin
    • Journal of Convergence for Information Technology
    • /
    • v.12 no.5
    • /
    • pp.1-14
    • /
    • 2022
  • This study tried to suggest crisis management compliance to prevent personal information infringement accidents that may occur in the process because the data including personal information is being processed in the artificial intelligence (AI) service process. To this end, first, the AI service provision process is divided into 3 processes such as service planning/data design and collection process, data pre-processing and purification process, and algorithm development and utilization process. And 3 processes are subdivided into 9 stages following to personal information processing stages to infringe personal information. All processes were investigated with literature and experts' Delphi. Second, the investigated personal information infringement factors were selected through FGI, Delphi, etc. for experts. Third, a survey was conducted with experts on the severity and possibility of each personal information infringement factor, and the validity and adequacy of the 94 responses were verified. Fourth, to present appropriate risk management compliance for personal information infringement factors in AI services, a method for calculating the risk level of personal information infringement is prepared by utilizing the asset value of personal information, personal information infringement factors, and the possibility of infringement accidents. Through this, the countermeasures for personal information infringement incidents were suggested according to the scored risk level.

Determinants of Investment or Speculative Grades (투자등급과 투기등급의 결정요인 분석)

  • Kim, Seokchin;Jung, Se Jin;Yim, Jeongdae
    • Asia-Pacific Journal of Business Venturing and Entrepreneurship
    • /
    • v.12 no.1
    • /
    • pp.133-144
    • /
    • 2017
  • This study investigates firm-specific financial variables that determine investment or speculative grades from the viewpoint of firms, which are one of the major stakeholders related to the credit rating. We employ an ordered probit model for our analysis with the sample data from 1999 to 2015 for listed firms in the Korean stock markets. For investment grades, operating margin, sales, market-to-book, dividend payment, capital expenditure ratio, and tangible asset ratio have a significantly positive impact on credit ratings. In the subsample for speculative grades, the coefficients of the dividend payment, retained earnings ratio, and capital expenditure ratio are significantly positive while short-term debt ratio and R&D expenditures have a significantly negative impact on credit ratings. For the analysis before and after 2009, when the Credit Information Use and Protection Act was strengthened after the global financial crisis, the coefficients of the capital expenditure ratio, cash ratio, and tangible asset ratio are significantly positive in the subsample for investment grades before 2009, but not significant after 2010. The coefficient of the long-term debt ratio is more significantly negative than that of the short-term debt ratio before 2009, for speculative grades, but short-term debt ratio has a more negative effect on ratings than long-term debt ratio after 2010. Surprisingly, the coefficient of the R&D expenditures is significantly negative in both investment and speculative grades since 2010. Our findings are inconsistent with the conjecture that the increase in R&D expenditures enhances the possibility of creating cash-flow by raising the investment growth opportunity, and thus affects positively the credit rating.

  • PDF