• Title/Summary/Keyword: System Safety Process

Search Result 2,427, Processing Time 0.032 seconds

CIA-Level Driven Secure SDLC Framework for Integrating Security into SDLC Process (CIA-Level 기반 보안내재화 개발 프레임워크)

  • Kang, Sooyoung;Kim, Seungjoo
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.30 no.5
    • /
    • pp.909-928
    • /
    • 2020
  • From the early 1970s, the US government began to recognize that penetration testing could not assure the security quality of products. Results of penetration testing such as identified vulnerabilities and faults can be varied depending on the capabilities of the team. In other words none of penetration team can assure that "vulnerabilities are not found" is not equal to "product does not have any vulnerabilities". So the U.S. government realized that in order to improve the security quality of products, the development process itself should be managed systematically and strictly. Therefore, the US government began to publish various standards related to the development methodology and evaluation procurement system embedding "security-by-design" concept from the 1980s. Security-by-design means reducing product's complexity by considering security from the initial phase of development lifecycle such as the product requirements analysis and design phase to achieve trustworthiness of product ultimately. Since then, the security-by-design concept has been spread to the private sector since 2002 in the name of Secure SDLC by Microsoft and IBM, and is currently being used in various fields such as automotive and advanced weapon systems. However, the problem is that it is not easy to implement in the actual field because the standard or guidelines related to Secure SDLC contain only abstract and declarative contents. Therefore, in this paper, we present the new framework in order to specify the level of Secure SDLC desired by enterprises. Our proposed CIA (functional Correctness, safety Integrity, security Assurance)-level-based security-by-design framework combines the evidence-based security approach with the existing Secure SDLC. Using our methodology, first we can quantitatively show gap of Secure SDLC process level between competitor and the company. Second, it is very useful when you want to build Secure SDLC in the actual field because you can easily derive detailed activities and documents to build the desired level of Secure SDLC.

Development of Evaluation Factors for Selecting Operator of Rail Traffic-Control (철도 관제권 운영주체 선정을 위한 평가항목 개발)

  • Oh, Jae Kyoung;Chung, Sung Bong;Kim, Ji Yeon;Kim, Sigon
    • Journal of Korean Society of Transportation
    • /
    • v.32 no.4
    • /
    • pp.327-335
    • /
    • 2014
  • The Korean government, as of last year, is attempting to introduce a competitive system in the rail-market. However there are some pertinent issues which need to be addressed in order to select the best possible organization for optimum railway traffic control. As there are no standard guidelines in selecting an agency, objective evaluation factors need to be properly applied to ensure the best possible decision is made. Through literature review and various interviews with experts, appropriate criteria were selected to evaluate the suitability of each potential operator. As generally mentioned, both safety and efficiency play vital roles in the selection process but in addition, there are other factors such as security and fairness, which also need to be considered. The individual weight of these factors were calculated by the AHP, in which three groups of experts were interviewed to acquire their expertise. According to the results, as a potential operator, the score of a railway operating company and the management cooperation of railway is 2.75 and 3.85, respectively. In the future, in preparation towards becoming a competitive rail-market, this research is expected to assist in choosing the best party to control the rail traffic system.

Comparison of Solid Waste Management System between Beijing and Seoul (베이징과 서울의 폐기물 관리체계 비교연구)

  • Yoo, Kee-Young
    • Journal of the Korea Organic Resources Recycling Association
    • /
    • v.23 no.3
    • /
    • pp.42-50
    • /
    • 2015
  • Beijing and Seoul are the capital of China and Korea, and political, economic, cultural, and tourist centers as well. Beijing is most likely to follow the footsteps of Seoul in the process of urbanization. The purpose of this study is to find out differences and improvements by comparing the solid waste management system between Beijing and Seoul. China classifies waste into urban waste, industrial waste and hazardous waste, which is the same as Korea did in 1980s. Beijing's policy directions in the waste management is similar to Seoul's in the early 1990s when Seoul strived to construct incinerators and landfill. Beijing's waste management achievements are also similar to Seoul's in that the ratio of recycling and incineration is high and that of landfill is low. Hence, it is expected for the waste management policies and achievement of two cities to resemble more and more. Financial burdens of government, indifference of citizens, and decentralized organizations of waste management might be the issues for Beijing to solve. In particular, to implement the user fee system and to encourage citizens to participate in waste separation discharge appear to be key issues in Beijing. Seoul should take a look at which the Beijing government itself collects waste in station and central area.

Development of test methodology and detail standard for ECDIS (선박항해용전자해도시스템 인증 기준 및 시험기술 개발)

  • 심우성;서상현
    • Proceedings of the Korean Institute of Navigation and Port Research Conference
    • /
    • 2004.04a
    • /
    • pp.269-274
    • /
    • 2004
  • The marine electronic system for safe navigation such as ECDIS has been contributing to increase the safety of navigation, decreasing the mariner's load of navigation. The ECDIS should be developed and approved by international standard of IMO for performance standard and IEC for type-approval method and required results. However, these standards have some ambiguities for us not to directly adopt them for real approval system, so we should analyze them for more clear meaning and prepare our own detail standard for type-approval system. The first thing to do for the goal of this research was to analyze the standard in detail and make ambiguity be cleared in our own standards, considering each test item in view of test methodology. For the result of analysis we could develop more evident and detail type-approval standard for each test item with test technology needed. Especially, we developed the colour differentiation test process of ECDIS monitor, which include the colour differentiation formula derived from CIE colour scheme. Several test items require sensor informations of navigation equipment compatible with IEC 61162. We also developed the signal simulator for general messages of IEC 61162 that must be provided. Additionally, the type-approval processes and standards for Back-up arrangement and RCDS mode were developed.

  • PDF

A Study on Restricted Category Type Certification Procedure of Surion Derivatives Rotorcraft (수리온파생형 회전익항공기 민간 제한형식증명 획득 절차에 관한 연구)

  • Kim, Yonghee;Park, Sanghyuk;Lee, Seunghyun;Kim, Sungjin;Kang, Youngho
    • Journal of Aerospace System Engineering
    • /
    • v.14 no.1
    • /
    • pp.54-61
    • /
    • 2020
  • For operating military aircraft, military certificate of airworthiness (MCA) must be obtained from military authority. Among procedures of general airworthiness certification, there is a military type certification process that aircraft design complies with military airworthiness certification criteria. The Surion is the first military rotorcraft which has obtained military type certificate, production validation and airworthiness certificate in Korea, and the Surion derivatives for special mission are being operated for government services. Based on Aviation Safety Act, in order to operate the Surion derivatives (military aircraft) for special purpose (such as emergency patient transportation and firefighting), the issuance of special airworthiness certificates was needed from civil airworthiness authority, and the restricted category type certification (RTC) is one of design approvals for special airworthiness certification to be streamlined. This study discussed the procedures for acquiring RTC for special purpose operation of the Surion derivatives classified as military derived aircraft, and suggested procedural ideas to improve Korean RTC system.

A Study on The Design of China DSRC System SoC (중국형 DSRC 시스템 SoC 설계에 대한 연구)

  • Shin, Dae-Kyo;Choi, Jong-Chan;Lim, Ki-Taeg;Lee, Je-Hyun
    • 전자공학회논문지 IE
    • /
    • v.46 no.4
    • /
    • pp.1-7
    • /
    • 2009
  • The final goal of ITS and ETC will be to improve the traffic efficiency and mobile safety without new road construction. DSRC system is emerging nowadays as a solution of them. China DSRC standard which was released in May 2007 has low bit rate, short message and simple MAC control. The DSRC system users want a long lifetime over 1 year with just one battery. In this paper, we propose the SoC of very low power consumption architecture. Several digital logic concept and analog power control logics were used for very low power consumption. The SoC operation mode and clock speed, operation voltage range, wakeup signal detector, analog comparator and Internal Voltage Regulator & External Power Switch were designed. We confirmed that the SoC power consumption is under 8.5mA@20Mhz, 0.9mA@1Mhz in active mode, and under 5uA in power down mode, by computer simulation. The design of SoC was finished on Aug. 2008, and fabricated on Nov. 2008 with $0.18{\mu}m$ CMOS process.

Developing a General Recycling Method of FRP Boats (FRP선박의 범용 재활용을 위한 재처리시스템의 연구)

  • Yoon, Koo-Young
    • Journal of the Korean Society for Marine Environment & Energy
    • /
    • v.12 no.1
    • /
    • pp.29-34
    • /
    • 2009
  • For several decades, many researchers have been involved in developing recycling methods for FRP boats. There are four basic classes of recycling covered in the literature. Despite of environmental problems(safety hazards), mechanical recycling of FRP boats, which involves shredding and grinding of the scrap FRP, is one of the simpler and more technically proven methods than incineration, reclamation or chemical ones. Because FRP is made up of reinforced fiber glass, it is very difficult to break into pieces. It also leads to secondary problem in recycling process, such as air pollution and unacceptable shredding noise level. Another serious problem of mechanical FRP recycling is very limited reusable applications for the residue. This study is to propose a new and efficient method which is more wide range applications and environment friendly waste FRP regenerating system. New system is added with the cyclone sorting machine for airborne pollutions and modified cutting system for several glass fiber chips sizes. It also has shown the FRP chip fiber-reinforced concrete and fiber-reinforced secondary concrete applications with the waste FRP boat to be more eligible than existing recycling method.

  • PDF

Structural Design and Analysis of a Hydraulic Coiling Arm for Offshore Wind-turbine Submarine Cable (해상풍력 해저케이블 하역용 유압식 코일링 암 구조설계 및 해석)

  • Kim, Myung-Hwan;Kim, Dong-Hyun;Oh, Min-Woo
    • Journal of the Computational Structural Engineering Institute of Korea
    • /
    • v.26 no.1
    • /
    • pp.1-7
    • /
    • 2013
  • Structural design and analysis of a coiling arm unloading machine for submarine cable have been originally conducted in this study. Three-dimensional CAD modeling process is practically applied for the structural design in detail. Finite element method(FEM) and multi-body dynamics(MBD) analyses are also used to verify the safety and required motions of the designed coiling arm structure. The effective moving functions of the designed coiling arm with respect to rotational and radial motions are achieved by adopting bearing-roller mechanical parts and hydraulic system. Critical design loading conditions due to its self weight, carrying cables, offshore wind, and hydraulic system over operation conditions are considered for the present structural analyses. In addition, possible inclined ground conditions for the installation of the designed coiling arm are also considered to verify overturn stability. The present hydraulic type coiling arm system is originally designed and developed in this study. The developed coiling arm has been installed at a harbor, successfully tested its operational functions, and finished practical unloading mission of the submarine cable.

Development of a deep-learning based automatic tracking of moving vehicles and incident detection processes on tunnels (딥러닝 기반 터널 내 이동체 자동 추적 및 유고상황 자동 감지 프로세스 개발)

  • Lee, Kyu Beom;Shin, Hyu Soung;Kim, Dong Gyu
    • Journal of Korean Tunnelling and Underground Space Association
    • /
    • v.20 no.6
    • /
    • pp.1161-1175
    • /
    • 2018
  • An unexpected event could be easily followed by a large secondary accident due to the limitation in sight of drivers in road tunnels. Therefore, a series of automated incident detection systems have been under operation, which, however, appear in very low detection rates due to very low image qualities on CCTVs in tunnels. In order to overcome that limit, deep learning based tunnel incident detection system was developed, which already showed high detection rates in November of 2017. However, since the object detection process could deal with only still images, moving direction and speed of moving vehicles could not be identified. Furthermore it was hard to detect stopping and reverse the status of moving vehicles. Therefore, apart from the object detection, an object tracking method has been introduced and combined with the detection algorithm to track the moving vehicles. Also, stopping-reverse discrimination algorithm was proposed, thereby implementing into the combined incident detection processes. Each performance on detection of stopping, reverse driving and fire incident state were evaluated with showing 100% detection rate. But the detection for 'person' object appears relatively low success rate to 78.5%. Nevertheless, it is believed that the enlarged richness of image big-data could dramatically enhance the detection capacity of the automatic incident detection system.

Software Package for Pipe Hydraulics Calculation for Single and Two Phase Flow (배관 유동의 주요 변수계산을 위한 소프트웨어 시스템의 개발)

  • Chang, Jaehun;Lee, Gunhee;Jung, Minyoung;Baek, Heumkyung;Lee, Changha;Oh, Min
    • Korean Chemical Engineering Research
    • /
    • v.57 no.5
    • /
    • pp.628-636
    • /
    • 2019
  • In various industrial processes, piping serves as a link between unit processes and is an essential installation for internal flow. Therefore, the optimum design of the piping system is very important in terms of safety and cost, which requires the estimation of the pressure drop, flow rate, pipe size, etc. in the piping system. In this study, we developed a software that determines pressure drop, flow rate, and pipe size when any two of these design variables are known. We categorized the flows into single phase, homogeneous two phase, and separated two phase flows, and applied suitable calculation models accordingly. We also constructed a system library for the calculation of the pipe material, relative roughness, fluid property, and friction coefficients to minimize user input. We further created a costing library according to the piping material for the calculation of the investment cost of the pipe per unit length. We implemented all these functions in an integrated environment using a graphical user interface for user convenience, and C # programming language. Finally, we verified the accuracy of the software using literature data and examples from an industrial process with obtained deviations of 1% and 8.8% for the single phase and two-phase models.