• Title/Summary/Keyword: Security risk analysis method

Search Result 128, Processing Time 0.025 seconds

Evaluation of Functional Ability and Nutritional Risk according to Self-Rated Health (SRH) of the Elderly in Seoul and Kyunggi-do (서울 및 경기지역 노인의 건강자가평가에 따른 기능적 건강 및 영양위험 평가)

  • Choi, Yoon-Jung;Park, Yu-Sin;Kim, Chan;Jang, Yu-Kyung
    • Journal of Nutrition and Health
    • /
    • v.37 no.3
    • /
    • pp.223-235
    • /
    • 2004
  • A functional ability and adequate nutritional status are the major determinants of health status, Self-rated health (SRH) is a worldwide method to assess health status and it is recognized as a predictor of morbidity and mortality in the elderly, This study was designed to evaluate the functional ability and nutritional risk according to SRH in the elderly. Four hundred nine free-living elderly people (118 male, 291 female), aged $\geq$ 65 years were interviewed by trained interviewers using structured questionnaires including demographic information, SRH, anthropometric measurements, functional ability, general health status, and nutritional risk. SRH was divided into three status such as “Good”, “Moderate” and “Poor” status. And all the data were analyzed by oneway ANOVA, spearman correlation, and x$^2$ analysis using SPSS 9.0 version at p 〈 0.05. Of all the subjects, 48.9% perceived their health status as “poor”, and their functional abilities (activities of daily living, instrumental activities of daily living) were more impaired than their counterparts (“good” and “moderate”). Poor self-rated health was also related to: a higher prevalence of illnesses (p 〈 0,001) especially in hypertension, arthritis. Self-rated health was significantly related to food security (p 〈 0.001), food enjoyment (p 〈 0.001) ,and nutritional knowledge (p = 0.0 13). Also NSI checklist total score was the highest in “poor” health status (p 〈 0.001). Better self-rated health was related to better food security, and better food enjoyment. However, smoking, alcoholic intake, exercise, eating behaviors, and demographic characteristics were not significantly different among the three SRH status. SRH was closely related to chronic diseases, functional ability, and nutritional risk in the elderly. Therefore, public health strategies for the elderly should be focused on the elderly who are “poor” in SRH, to improve nutritional status and functional ability, and to reduce risk factors of chronic diseases.

Problem Analysis and Countermeasures Research through Security Threat Cases of Physical Security Control Systems (물리보안 관제시스템의 보안위협 사례를 통한 취약점 분석 및 대응방안 연구)

  • Ko, Yun Seong;Park, Kwang Hyuk;Kim, Chang Soo
    • Journal of Korea Multimedia Society
    • /
    • v.19 no.1
    • /
    • pp.51-59
    • /
    • 2016
  • Physical security protecting people from physical threats, such as a person or vehicle, has received a great attention. However, it has many risks of hacking and other security threats because it is highly dependent on automated management systems. In addition, a representative system of physical security, a CCTV control system has a high risk of hacking, such as video interceptions or video modulation. So physical security needs urgent security measures in accordance with these threats. In this paper, we examine the case of security threats that have occurred in the past, prevent those from threatening the physical security, and analyze the security problem with the threats. Then we study the countermeasures to prevent these security threats based on the problems found in each case. Finally we study for the method to apply these countermeasures.

The Effect of Cloud Service Risks on the Intention of Purchasing Real Options: Focusing on Public Cloud Service of Small and Medium-sized Enterprises (클라우드 서비스 위험이 실물옵션 채택의도에 미치는 영향: 중소기업의 퍼블릭 클라우드 서비스를 중심으로)

  • Kim, Jeong-eun;Yang, Hee-dong
    • Information Systems Review
    • /
    • v.17 no.1
    • /
    • pp.117-140
    • /
    • 2015
  • Cloud Computing has drawn attention as one of 10 IT strategic technology trends and has various advantages such as cost reduction and enhancing business flexibility. However, corporations hesitate to adopt the service because of unexpected risks. Especially compared to large firm, medium and small ones use public cloud that security risk is high. Meanwhile, real option strategy has drawn attention as the method to hedge uncertainty in IT projects. Therefore, in this study causal relationships among technical, security, relational, and economic risks of cloud service will be investigated. Eventually, this study investigates how those risks influence the intention to choose the real option about the cloud service. For this study, five hypotheses is drawn, and a survey is conducted about the medium and small firms which are currently using cloud service to examine hypotheses. Since the study is at organizational level, 287 questionnaire replies are recalculated to 120 firms. For statistical analysis, Smart PLS and SPSS Statistics18 are used. As a result, technical risk of cloud service has significantly positive influence on security risk. Second, security risk and relational risk of cloud service has significantly positive influence on economic risk. Third, economic risk of cloud service has significantly positive influence on the intention to purchase the delay option or abandon option. Based on this result, this research discussed practical and academic implications and the limitations.

[Retracted]Cyber Threat Analysis on Network Communication in Power System and Countermeasures Suggestions ([논문철회]전력계통 네트워크 통신방식 변화에 따른 사이버위협 분석 및 대응방안 제시)

  • Il Hwan Ji;Seungho Jeon;Jung Taek Seo
    • Smart Media Journal
    • /
    • v.12 no.2
    • /
    • pp.91-102
    • /
    • 2023
  • The Energy Management System (EMS) communicates with power plants and substations, monitors the substations and plant operational status of the transmission and substation system for stability, continuity, real-time, and economy of power supply, and controls power plants and substations. Currently, the power exchange EMS communicates with power plants and substations based on the serial communication-based Distributed Network Protocol (DNP) 3.0 protocol. However, problems such as the difficulty of supply and demand of serial communication equipment and the lack of installation space for serial ports and modems are raised due to the continuous increase in new facilities to perform communication, including renewable power generation facilities. Therefore, this paper presents a TCP/IP-based communication method instead of the existing serial communication method of the power exchange EMS, and presents a security risk analysis that may occur due to changes in the communication method and a countermeasure to the security risk.

A Study on the Information System Security Audit Method for Personal Information Protection (개인정보보호를 위한 정보시스템 보안감사 방법에 관한 연구)

  • Lee, Dong-Nyuk;Park, Jeong-Sun
    • Journal of the Korea Safety Management & Science
    • /
    • v.12 no.4
    • /
    • pp.107-116
    • /
    • 2010
  • To give a solution to solve personal information problems issued in this study, the domestic and overseas cases about information security management system including an authentication technique are analyzed. To preserve the outflow of personal information, which is such a major issue all over the world, a new security audit check list is also proposed. We hope this study to help information system developers construct and operate confidential information systems through the three steps: Analysis of risk factors that expose personal information, Proposal to solve the problem, Verification of audit checking items.

A Study on Business Process Based Asset Evaluation Model and Methodology for Efficient Security Management over Telecommunication Networks (정보통신망의 효율적 보안관리를 위한 비즈니스 프로세스 기반의 자산평가모델 및 방법론에 관한 연구)

  • Woo, Byoung-Ku;Lee, Gang-Soo;Chung, Tai-Myoung
    • The KIPS Transactions:PartC
    • /
    • v.10C no.4
    • /
    • pp.423-432
    • /
    • 2003
  • It is essential suity management and standardized asset analysis for telecommunication networks, however existing risk analysis methods and tools are not enough to give shape of the method to evaluate value and asset. they only support asset classification schemes. Moreover, since the existing asset classification schemes are to evaluate comprehensive general risk, they are not appropriate for being applied telecommunication networks and they can´t offer any solutions to an evaluator´s subjectivity problem. In this paper, to solve these problems, we introduce the standardized definition of asset evaluation model new asset classification scheme, two-dimensional asset process classification scheme to consider business process and asset, various evaluation standards for quantitative value and qualitative evaluation. To settle an valuator´s subjectivity problem, we proposed $\beta$-distribution Delphi method.

Conceptual Study for Risk Assessment of Asset Management of Infra Structure System (국가기반시설 자산관리위험도분석 개념 연구)

  • Park, Mi Yun;Park, Hung Ju
    • Journal of Korean Society of Disaster and Security
    • /
    • v.5 no.1
    • /
    • pp.43-47
    • /
    • 2012
  • The asset management of infra facilities is a total framework for finally supporting a safe and comfortable service, which includes functions of supporting evaluation of condition and performance of infrastructures, making the decision method of repair or rehabilitation of deteriorated facilities, and lengthening the life cycle of structure through the decision of adequate cost and time of repair or reinforcement. In the range of the asset management, organization, human, the target, and information & data of company are included. Therefore, in this paper, appling the method of asset management analysis to the infra structures, the process of the risk assesment using BRE (Business Risk Exposure) and the basis of consisting ORDM (Optimized Renewal Decision-Making) are expressed.

The Effects of Perceived Risks on Food Purchase Intention: The Case Study of Online Shopping Channels during Covid-19 Pandemic in Vietnam

  • NGUYEN, Cuong;TRAN, Doan;NGUYEN, Anh;NGUYEN, Nhan
    • Journal of Distribution Science
    • /
    • v.19 no.9
    • /
    • pp.19-27
    • /
    • 2021
  • Purpose: Purchasing food via online shopping channels is booming during Covid-19 Pandemic in Vietnam. However, the perceived risks of food bought via online shopping channels may discourage consumers. Hence, this study assesses the effects of perceived risks on food purchase intention via online shopping channels in Vietnam. Research design, data and methodology: This study applied the multiple regression analysis with 253 samples collected from consumers who frequently purchase food via online shopping channels in Vietnam. The questionnaire is provided to respondents via Google Form. The sample collection method is convenience sampling. Three hundred samples were collected, but 253 samples are used after filtering the responses with missing data. The Exploratory Factor Analysis (EFA) and regression analysis are used for data analysis on SPSS software version 20. Results: The results show that product risk, security risk, time risk, and fraud risk of the seller negatively affect the intention to buy food via online shopping channels in Vietnam. Conclusions: The study provides several implications and recommendations for food companies and online food sellers. Reducing customers' perceived risks online food makes customers more willing to buy food online during Covid-19 Pandemic. Limitations and suggestions for further research are also discussed.

A Study on The Practical Risk Mitigation Methodology for Systematical Risk Management of Information System (정보시스템의 체계적인 위험관리를 위한 실용적인 위험감소 방법론에 관한 연구)

  • Eom, Jung-Ho;Woo, Byeong-Koo;Kim, In-Jung;Chung, Tai-M.
    • The KIPS Transactions:PartC
    • /
    • v.10C no.2
    • /
    • pp.125-132
    • /
    • 2003
  • In the paper, we can select the best safeguard as proposed the definite and systematical method and procedure on risk mitigation of risk management for information system. The practical risk mitigation methodology has a good fulfillment procedure and a definition to fulfill procedure on each phase. So, it is easy to fulfill and can apply to any risk management methodology. The practical risk mitigation is composed of 6 phases, which are the existing safeguard assessment, safeguard means selection, safeguard technique selection, risk admission assessment, cost-effective analysis and safeguard embodiment. The practical risk mitigation's advantages are as follow. Efficient selection of safeguards to apply to risk's features with safeguard's means and techniques before embodying safeguards. Prevention of redundant works and security budgets waste as re-using the existing excellent safeguards through the existing safeguard assessment. Reflection of organization's CEO opinions to require special safeguards for the most important information system.

Method for Evaluating the Security Risk based on Webpage Source Code (웹 페이지 소스 코드에 기반한 보안 위험도 산정 기법)

  • Cho, Sanghyun;Lee, Min-Soo;Kim, Young-Gab;Lee, Junsub;Kim, Sangrok;Kim, Moon-Jeong;Kim, In Ho;Kim, Sung Hoon
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2007.11a
    • /
    • pp.1258-1261
    • /
    • 2007
  • 온라인 피싱과 같은 경제적 목적의 정보 수집 행위들이 급격히 증가하고 있는 가운데, 위험 사이트 정보를 관리하는 블랙리스트 기반의 대응과 신뢰할 수 있는 사이트를 기반으로 하는 화이트 리스트 접근 방법이 활용되고 있다. 그러나 블랙리스트 기반 방법은 피싱 사이트의 유효시간을 볼 때 비현실적이며, 화이트 리스트 접근 방법은 인증된 사이트 내에 존재하는 악성 웹 페이지나 악성 사이트로 유도되는 피싱 메일에는 대응하기 어렵다. 이 논문에서는 화이트 리스트 접근 방법을 보완하기 위해 사용자 웹 페이지의 위험도를 정량화 할 수 있는 웹 페이지 위험도 산정 기법을 제안한다.