• Title/Summary/Keyword: Roles of Private Security

Search Result 32, Processing Time 0.022 seconds

Attribute-Based Signatures with DNF Policies (DNF 정책을 가지는 속성 기반 서명)

  • Lee, Kwang-Su;Hwang, Jung-Yeon;Kim, Hyoung-Joong;Lee, Dong-Hoon
    • Journal of the Institute of Electronics Engineers of Korea CI
    • /
    • v.46 no.1
    • /
    • pp.78-87
    • /
    • 2009
  • An attribute-based signature scheme is a signature scheme where a signer's private key is associate with an attribute set and a signature is associated with an access structure. Attribute-based signature schemes are useful to provide anonymity and access control for role-based systems and attribute-based systems where an identity of object is represented as a set of roles or attributes. In this paper, we formally define the definition of attribute-based signature schemes and propose the first efficient attribute-based signature scheme that requires constant number of pairing operations for verification where a policy is represented as a disjunctive normal form (DNF). To construct provably secure one, we introduce a new interactive assumption and prove that our construction is secure under the new interactive assumption and the random oracle model.

Australian Case Study in Regulatory Techniques to the Security Industry Reform and Policy Implications (호주 민간경비산업 고품질 규제수단 검토 및 시사점)

  • Kim, Dae-Woon
    • Korean Security Journal
    • /
    • no.47
    • /
    • pp.7-36
    • /
    • 2016
  • The security providers industry, often referred to as an industry with unconfined growth ceiling, has entered a remarkable mass-growth phase since the 1980. In the modern era, private-sector security increasingly cover functions relating to general security awareness (including counter-terrorism) in partnership with State bodies, and the scale of operations continue to accelerate, relative to the expanding roles. In the era of pluralisation of policing, there has been widening efforts pursued to develop a range of regulatory strategies internationally in order to manage such growth and development. To date, in South Korea, a diverse set of industry review studies have been conducted. However, the analyses have been conventionally confined to North America, Britain, Germany and Japan, while developments in other world regions remain unassessed. This article is intended to inform the drivers and determinants of regulatory reforms in Australia, and examine the effectiveness of the main pillars of licensing innovations. Over the past decades, the Australian regime has undergone a wave of reforms in response to emerging issues, and in recognition of the industry as a 'public good' due to underpopulation density and the resulting security challenges. The focus of review in this study was on providing a detailed review of the regulatory approach taken by Australia that has expanded police-private security co-operation since the 1980s. The emphasis was on examining the core pillars of risk management strategies and oversight practices progressed to date and evaluating areas of possible improvement in regulation relative to South Korea. Overall, this study has identified three key features of Australian regime: (1) close checks on questionable close associates (including fingerprinting), (2) power of inspection and seizure without search warrant, (3) the 'three strikes' scheme. The rise of the private security presence in day-to-day policing operations means that industry warrant some intervening government-sponsored initiative. The overall lessons learnt from the Australian case was taken into account in determining the following checks and balances that would provide the ideal setting for the best-practice arrangement: (1) regulatory measure should be evaluated against a set of well-defined indicators, such as the merits of different enforcement tools for each given risk, (2) information about regulatory impacts should be analysed by a specialist research institute, (3) regulators should be innovative in applying a range of strategies available to them by employing a mixture of compliance promotional strategies, and adjust the mix as required.

  • PDF

Key Factors in the Growth of Security Market and the future of Korean Security Industry (시큐리티 산업의 성장요인과 국내 시장전망)

  • Lee, Hyun-Hee
    • Korean Security Journal
    • /
    • no.13
    • /
    • pp.383-402
    • /
    • 2007
  • World security market has continuously been growing since the 2000s. The growth rate seems to reach up to 7-8% annually. What is more, Korea is expected to be one of the most rapidly developing markets, Based of this view, this research investigates the principal drivers to have affected on the expansion of Korean security market over the past 20 years. In addition to that, this study also examines the influence of recent changes in the world economy and globalization, socio-demographic change, development of information technology on the future security market. The data reviewed in this study are official crime rates, socio-economic indicators, statistics from the National Police Agency and the business reports of a leading private security company. This study shows that several factors such as rising crime rates, lack of police capacities, national economic growth and rising household income have played important roles in development of Korean market. It is also expected to keep those positive affects on the future market. On the other side, in recent years, the security market seems to be increasingly affected by new social economic changes. Those are impact of last aging society, rapid increase of individual household and women's participation in labor market. These factors seem to increase personal and household needs for security service. World economy, globalization process and development of information technology are also deemed to give rise to social demands for surveillance, monitoring service and security in cyber space.

  • PDF

An Authority-Based Efficient Key Management Protocol for Cloud Environment (클라우드 환경을 위한 효율적인 권한 기반 키 설립 프로토콜)

  • Choi, Jeong-hee;Lee, Sang-ho
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.28 no.5
    • /
    • pp.1035-1045
    • /
    • 2018
  • Recently, with the development of IT technology, authentication methods of users using cloud services have been diversified. However, research on providing authentication information of a user using a cloud service securely according to authority has not been make until now. In this paper, we propose a key establishment protocol which can perform split authentication using secret key and access control key according to the role authority of user in Intra cloud environment. The proposed protocol generates the access control key and secret key of the user by using the attributes of the user and the generated random number($t_1$, $t_2$), and classifies the roles according to the user's authority after generating the key. Unnecessary operation processes can be reduced. As a result of the performance evaluation, the proposed protocol guarantees the security against various type of attacks that may occur in the cloud environment because the user is authenticated by dividing the access control key and secret key. The size of the ciphertext used to establish the key could be reduced by ${\sum}+1$ more than the existing protocol.

A Study on Advanced RBAC Model for Personal Information Security Based on EHR(Electronic Health Record) (EHR System에서 개인정보보호를 위한 개선된 RBAC 모델에 관한 연구)

  • Ahn, Eun-Kyoung;Kim, Byung-Hoon;Lee, Dong-Hwi;Kim, Kui-Nam
    • Convergence Security Journal
    • /
    • v.9 no.2
    • /
    • pp.49-58
    • /
    • 2009
  • In medical Institution, Electronic Health Record (EHR) is "must access information" to medical staff considering it as medical information. However, this unnecessary exploration of personal information must be treated confidentially because the information is highly related to other's private concerns. It is necessary that medical workers should be also restricted to their access to EHR depending on their roles and duties. As the result, this article explains that "EHR access control will be executed by differentiating authorized medical staff from non medical-related staff as well as EHR access will be only permitted to authorized medical staff depending on their work status conditions. By using Advanced RBAC model on medical situation, we expect to minimize unnecessary leak of EHR information; especially, emergency medical care is needed, access control is highly required depending on a person in charge of the cases or not, and restricted medical information defined by the patient one-self is only allowed to be accessed.

  • PDF

Research on the Actual Conditions and Achievement of School Forest (학교숲 이용실태 및 성과 분석)

  • Byeon, Jae-Sang;Yun, Hee-Jeong;Kim, In-Ho
    • Journal of the Korean Institute of Landscape Architecture
    • /
    • v.36 no.1
    • /
    • pp.49-61
    • /
    • 2008
  • School forests, an important part of the urban forest, has diverse functions and plays an important role in artificial environment. It has three main functions: educational for children, ecological for nature, and cultural for residents. In spite of its diverse functions and roles, the actual conditions and achievements of school forests have not been correctly evaluated, resulting in institutional inertia. To improve these problems, this study was synthetically conducted by the post occupancy evaluation of users(residents, teachers and students) at school forests. This study can be summarized as follows: 1. The cognition and satisfaction level of school forests supported by private organizations was higher than those by local governments. Therefore, the establishment of a post management system of private organizations is more effective than the simple financial support of local governments. 2. The frequency of use of school forests by residents was higher than that of teachers. Their purposes were mainly to rest or walk However, teachers used school forests for nature observation and education. 3. In a survey of teachers about a reform measure and problems of school forests, the necessity of a post management system and financial security were significant requests. In addition, steady publicity and education, participant program, and incentives for teachers should be considered. This study is meaningful to systematically develop and activate the school forest movement. The integrated approach to the school forest movement reflects opinions of related users and is expected to become a useful foundation in studying about the improvement of city environments.

A Study on the Development of Consortium Blockchain Governance Framework (컨소시엄 블록체인 거버넌스 프레임워크 개발에 관한 연구)

  • Park, Jin-Sang;Kim, Jung-Duk
    • Journal of Digital Convergence
    • /
    • v.17 no.8
    • /
    • pp.89-94
    • /
    • 2019
  • Due to the limitations of public and private blockchain, several organizations are implementing consortium blockchain systems. In order for an organization to conduct business using blockchain, it must consider 'blockchain governance' factors, such as decision rights, accountability and incentives over on-chain and off-chain, depending on the organization's strategy and objectives. If an organization conducts business without blockchain governance, it cannot achieve its strategy and objectives systematically, effectively and efficiently, and cannot comply with internal external requirements such as the expectations of stakeholders and laws. However, as businesses using consortium blockchain expand, there is no research on consortium blockchain governance. Thus, in this study, the consortium blockchain governance framework, including functions, roles and responsibilities, was developed to help organizations effectively and efficiently conduct business using consortium blockchain. In addition, to review the feasibility of the developed consortium blockchain governance framework, the framework was reviewed through an advisory committee consisting of experts on blockchain and governance over two occasions. As a result of the review, components of the consortium blockchain governance framework, including functions, roles and responsibilities, were considered complete and relevant.

CCTV and Privacy - Tools for Security or Eyes of Surveillance? - (CCTV와 프라이버시 - 안전을 위한 도구인가, 감시의 눈인가? -)

  • Lee, Yun-bok
    • Journal of Korean Philosophical Society
    • /
    • v.143
    • /
    • pp.215-244
    • /
    • 2017
  • It is said that we live in an age of technology. And indeed, science and technology do play key roles to our life of happiness, but they are equally central in all events that threaten it. Science and technology are the means we often turn to in seeking solutions to our problems, and in turn are often the apparent sources of new problems. Thus it is not surprising that they have two aspects at the same time. CCTV has been presented to us as a technical solution to security problems. With the help of CCTV, we can more effectively prevent, detect, and prosecute crimes. With the help of CCTV, both public and private spaces can be made more secure. But of course, CCTV also has a down side. The down side most prominently anticipated has been loss of privacy and proliferation of surveillance. It is largely this potential problem with CCTV that has been regulated against. It is said that one reason for imposing a limitation on individual privacy is the societal interest in the prevention of crime. Accordingly a balance between the need to prevent crime through the use of CCTV and the duty to respect the privacy interests of individual citizens is in need of redress. In other hand, two theories of socio-political philosophy may have provided useful ways of understanding the role of CCTV in contemporary society. Firstly, neo-Marxist frameworks, for instance, stress the use of CCTV to police existing unequal socioeconomic divisions within society and the dominance of particular forms of order based upon materialist agendas. Secondly, Foucauldian frameworks contend that Foucault's notion of panoptic surveillance underpinning (self) disciplinary society is an appropriate template for understanding CCTV in late-modern society. In order to find a new point of valance between security and privacy in the use of CCTV, the participation of each citizen in the discourse to make the new norm is necessary. And to prevent its political misuse, their surveillance, or check for the potential surveillance-power is required.

Improvement Plan of the Korean Electronic Medical Record (우리나라 전자의무기록의 개선방안)

  • Choi, Chan-Ho
    • Journal of Society of Preventive Korean Medicine
    • /
    • v.18 no.3
    • /
    • pp.11-21
    • /
    • 2014
  • The rapid development and distribution of information communication industry facilitates the changes of hospital administration, introducing EMR(Electronic Medical Record) instead of paper-based medical record in the medical field. The developed countries such as U.S. have established EMR system after in the middle of 1970s because the primary advantages of EMR is to store and handle vast amounts of records efficiently and increase the quality of health care. Most of health organizations in Korea also apply medical record system to their administration. As the result, they have accomplished a scientific administration system through the use of medical record to handle a variety of patient's information including patient's confidentiality and privacy such as family history, social status, income level, and so on. However, access to and the misuse of EMR causes illegal infringement of patient's information and finally it becomes a very serious medical issue. Potential leakage and misuse of records may seriously infringe patient's privacy rights. In this respect, the related agencies in the public and private sector have been making efforts to prevent patient's records leakages. Especially, the revision bill of Medical Law in 2002 establishes the ways on the security and standards of electronic records. However, it does not provide the proper guidelines which is applied to the rapid changes of the medical environment. One of the most priorities in the hospital administration is the production and maintenance of an accurate medical records fulfilled by medical recorders. Therefore, it is very important for health care providers to hire ethical-based medical recorders. But, unfortunately most of hospitals overlook the importance of their roles. All parts including government, physician and patient must have more concerns on the problems related to EMR. Therefore, this study aims to propose the proper ways to resolve the problems coming from EMR.

Recommendations of the Korean Society for Health Education and Promotion for Developing the Korean Credentialing Policy of Health Education Specialist (보건교육사 제도정립의 방향)

  • Kim, Kwang-Kee;Kim, Keon-Yeop;Kim, Young-Bok;Kim, Hye-Kyeong;Park, Kyoung-Ok;Park, Chun-Man;Lee, Moo-Sik
    • Korean Journal of Health Education and Promotion
    • /
    • v.25 no.2
    • /
    • pp.73-89
    • /
    • 2008
  • Objectives: This research was conducted to suggest a recommendation for the Korean credentialing policy of health education specialist as the primary human resource in community health promotion activities from the special group perspective of the Korean Society for Health Education and Promotion. Methods: This research was conducted by the professional focus group discussion and descriptive literature review on health education and promotion. Results: This draft recommendation for Korean credentialing system development of health education specialist was based on the four background reasons for modifying health promotion related acts, for developing better policy of health education credentialing, for keeping the public and ethical responsibilities as the competitive professional society, and for improving health promotion activities in Korea. Theoretical background of the four reasons was Ottawa Charter. We classified three credentialing levels of health education specialist based on health education own competencies, coordiating competencies with environmental factors, and research competencies. Furthermore, we developed 10 major roles and categorized 53 sub-roles based on these competencies above. We recommended 10 classes required to take to become Health Education Specialist. These 10 classes were developed based on the credentialing systems in the United States and Japan. These 10 classes were about health education and promotion methods and strategies not health intervention topics. We also built the draft plan for continuing education to keep KCHES based on the NCHEC in the United States. Conclusions: Further research should be conducted to build better health education specialist credentialing systems modifing current communtiy-based health promotion activities in terms of modifying public regulation, developing KCHEC examination system, protecting job security both in public and private sectors, and creating professionalism in KCHEC.