• Title/Summary/Keyword: Operation Audit

Search Result 93, Processing Time 0.019 seconds

A Study on Development of Operation Evaluation Index for Safety Management System Using AHP (AHP를 이용한 안전관리체제 운영평가지표 개발에 관한 연구)

  • Noh, Chang-Kyun;Lee, Jong-In;Shin, Chul-Ho;Kim, Hyung-Geun;Yim, Jeong-Bin
    • Journal of the Korean Society of Marine Environment & Safety
    • /
    • v.12 no.4 s.27
    • /
    • pp.247-252
    • /
    • 2006
  • In this study, the index for operation evaluation index for safety management system that can be facilitated as the assessment tool for system operation monitoring and operation outcome and the safety management system of shipping companies has been developed. By using this index, this study may provide the instruction or consultation for frequent facilitation by comprehensively recording the required knowledge for each operation stage for the companies that prepares the introduction of the safety management system and companies that already introduced the system to maintain and develop the system. In addition, when working on internal audit and assessing the system operation outcome, it may be facilitated as the assessment tool to contribute in continuous improvement and development. This index is consisted of 11 large categories, 35 items of medium categories and 447 small categories.

  • PDF

Study on Windows Event Log-Based Corporate Security Audit and Malware Detection (윈도우 이벤트 로그 기반 기업 보안 감사 및 악성코드 행위 탐지 연구)

  • Kang, Serim;Kim, Soram;Park, Myungseo;Kim, Jongsung
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.28 no.3
    • /
    • pp.591-603
    • /
    • 2018
  • Windows Event Log is a format that records system log in Windows operating system and methodically manages information about system operation. An event can be caused by system itself or by user's specific actions, and some event logs can be used for corporate security audits, malware detection and so on. In this paper, we choose actions related to corporate security audit and malware detection (External storage connection, Application install, Shared folder usage, Printer usage, Remote connection/disconnection, File/Registry manipulation, Process creation, DNS query, Windows service, PC startup/shutdown, Log on/off, Power saving mode, Network connection/disconnection, Event log deletion and System time change), which can be detected through event log analysis and classify event IDs that occur in each situation. Also, the existing event log tools only include functions related to the EVTX file parse and it is difficult to track user's behavior when used in a forensic investigation. So we implemented new analysis tool in this study which parses EVTX files and user behaviors.

A Study on the Development of Advanced LOSA Method (진보된 LOSA 방법론 개발에 관한 연구 )

  • Jihun Choi
    • Journal of Advanced Navigation Technology
    • /
    • v.27 no.4
    • /
    • pp.351-355
    • /
    • 2023
  • The need for Advanced LOSA arises from the limitations and drawbacks of traditional LOSA. Amended LOSA aims to address some of the shortcomings of the original methodology and make it more effective and relevant to current aviation safety needs. Some of the key reasons for developing Advanced LOSA include Enhancing the scope, Improving data collection and analysis, Providing more targeted safety recommendations. First, Traditional LOSA mainly focuses on flight deck operations, but Advanced LOSA expands the scope to include other operational areas such as cabin operations, ground handling, and maintenance. Second, Advanced LOSA can build a Forecasting System that can predict the future through data collection and data analysis. Third, Advanced LOSA aims to provide more specific and targeted safety recommendations based on the Aviation data collection and Aviation data analysis. Overall, Advanced LOSA seeks to improve aviation safety by addressing the limitations of traditional LOSA and providing a more comprehensive and effective methodology for identifying and mitigating safety risks in aviation operations.

Windows Artifacts Analysis for Collecting Cryptocurrency Mining Evidence (암호화폐 채굴 증거 수집을 위한 윈도우 아티팩트 분석 기술 연구)

  • Si-Hyeon Park;Seong-Hun Han;Won-hyung Park
    • Convergence Security Journal
    • /
    • v.22 no.1
    • /
    • pp.121-127
    • /
    • 2022
  • Recently, social issues related to cryptocurrency mining are continuously occurring at the same time as cryptocurrency prices are rapidly increasing. In particular, since cryptocurrency can be acquired through cryptographic operation, anyone with a computer can easily try mining, and as the asset value of major cryptocurrencies such as Bitcoin and Ethereum in creases, public interest is increasing. In addition, the number of cases where individuals who own high-spec computers mine cryptocurrencies in various places such as homes and businesses are increasing. Some miners are mining at companies or public places, not at home, due to the heat problem of computers that consume a lot of electrical energy, causing various problems in companies as well as personal moral problems. Therefore, this study studies the technology to obtain evidence for the traces of mining attempts using the Windows artifacts of the computers that mined cryptocurrency. Through this, it is expected that it can be used for internal audit to strengthen corporate security.

Profitability determinants of hospitals (병원의 수익성 관련 요인)

  • 이윤석;유승흠
    • Health Policy and Management
    • /
    • v.13 no.3
    • /
    • pp.129-147
    • /
    • 2003
  • This study is to grasp a trend of profitability classified by characteristics of hospitals and to analyze related factors. Subjects are 145 hospitals which have gotten the standardization audit by Korean Hospital Association during 1998-200l. Profitability was measured in the aspect of operation profit rate with operating margin to gross revenue as proxy variables. Independent variables were classified by general factors (ownership, number of beds, period of establishment, competition), financial factors (liabilities to total assets, current ratio, fixed ratio, total asset turnover, inventories turnover), and factors related to patient treatment (average length of stay, bed occupancy rate, new outpatient ratio, admission ratio of outpatients, number of patients per specialist, personnel costs per adjusted inpatient, administrative costs per adjusted inpatient). Hierarchical multiple regression analysis model was used in this study. As a result of hierarchical multiple regression analyzation of operating margin to gross revenue, adjustive $R^2$ of general factors was relatively more powerful. The factors had significant effect on operating margin to gross revenue were ownership(+), number of beds(+), competition(+), current ratio(+), fixed ratio(+), total asset turnover(+), personnel costs per adjusted inpatient(-).

A Comprehensive Information System Validation Model

  • Choi, Kyung-Sub
    • 한국경영정보학회:학술대회논문집
    • /
    • 2007.06a
    • /
    • pp.557-561
    • /
    • 2007
  • Along with the significance of information systems in today s global business operation, the significance of information systems control and audit is ever increasing in the effort to secure accuracy and integrity of vital business data. A study is undertaken to integrate Food and Drug Administration computerized systems validation regulations. Securities & Exchange Commission Sarbanes-Oxley Act of 200 and other significant regulations, and lastly, People Capability Maturity Model into one comprehensive information system validation model. The initial benefits to this comprehensive model are convenience, time-saving, and synchronization of the regulations. An organization that is striving for a high level of quality system in its essential operating areas of organization may opt for this model. After the complete development of the model, a field test would be scheduled to test its efficacy and validity.

  • PDF

Suggestions for the Improvement of Aviation and Railway Accident Investigation Board in Korean (항공사고조사위원회의 업무개선에 대한 제언)

  • Han, KyoungKeun;Choi, YounChul
    • Journal of the Korean Society for Aviation and Aeronautics
    • /
    • v.25 no.4
    • /
    • pp.187-194
    • /
    • 2017
  • ICAO Universal Safety Oversight Audit Programme is a comprehensive evaluation for aviation safety matters, including aircraft operation, licensing and aircraft incident/accident investigation. As this programme is measures aviation safety level of States, there is a need to meet international standards, especially in the field of aircraft incident/accident investigation. This research discusses points required to satisfy international standards, which are independence and autonomy of an accident investigation board, the lack of the enough number of investigators and efficient management of those personnel, the effective composition and use of an investigation report, an accident investigation itself to build big data and the creation of a cooperation system among States. This paper suggests various opinions in order to enhance aviation safety especially through aircraft accident investigations, using case studies from the US, UK and Japan.

Mission and Operation of Institutional Review Board (임상시험심사위원회의 임무와 운영)

  • Kim, Yong-Jin
    • Journal of Yeungnam Medical Science
    • /
    • v.30 no.2
    • /
    • pp.73-78
    • /
    • 2013
  • An institutional review board (IRB) should independently safeguard the right, safety, and well-being of all clinical trial subjects. It should consist of members who are qualified and experienced to review and evaluate the science, medical aspects, and ethics of the proposed trial. They have to pursue continuing efforts to improve the standards of review. The levels of review include the full board review, expedited review, continuing review, or exempt from review, while the levels of decision-making include approval, conditional approval, deferred approval, and disapproval. Investigators must follow the approved protocols and regulations honestly, and it is the IRB's mission to audit clinical trial sites as well.

Study of Configuration Management Using Se Tool (SE 전산지원도구를 이용한 형상관리 방안 연구)

  • Park, Jong-Sun
    • Journal of the Korean Society of Systems Engineering
    • /
    • v.7 no.1
    • /
    • pp.53-56
    • /
    • 2011
  • Configuration management plays a key role in systems engineering process for any project from earlier stage of development. It consists of five major activities, ie., configuration management planing, configuration identification, configuration control, configuration status accounting and configuration verification and audit, and is essential to control system design, development and operation throughout entire life cycle of the system development. And it is directly associated with other part of systems engineering management process, ie., technical data management which provides traceability of important decisions and changes during development. In this paper, we describe how to apply CASE(Computer-aided Systems Engineering) tool-Cradle for the configuration management to achieve effectiveness of Technical Management process.

A Study of the operation and performance on the execution of Budgeting & Planning Examination Program (아산시 재정.설계 심사제도 도입과 성과)

  • Yu, Seon-Jong;Kim, Seong-Gyu
    • 한국디지털정책학회:학술대회논문집
    • /
    • 2007.06a
    • /
    • pp.69-78
    • /
    • 2007
  • Since 2005, Asan city government have executed the "Budgeting & Planning Examination Program". A construction contract more than two hundred thousand dollars, service contract more than fifty thousand dollars and purchasing goods contract more than five thousand dollars must be examined about their propriety by office of audit. Asan city government have saved its budget about fifteen million and five hundred twenty thousand dollars for the institution. Moreover, Asan citizens' trust and social capital about their local government have been increased through it Asan city government will reinforce a speed and effectiveness of it.

  • PDF