• Title/Summary/Keyword: information policy

Search Result 10,172, Processing Time 0.036 seconds

Privacy Controller using XACML for Internet Identity Management System (인터넷 Identity 관리 시스템 환경에서 XACML을 이용한 프라이버시 컨트롤러)

  • Roh, Jong-Hyuk;Jin, Seung-Hun
    • The Journal of Korean Institute of Communications and Information Sciences
    • /
    • v.32 no.7B
    • /
    • pp.438-447
    • /
    • 2007
  • In the Internet, an identity service must to obtain permission from a user to allow them to share data with requesting service. For that, the privacy policy, which reflects legal regulations and preferences made by the user, is needed. Also, the management interface that aids the user to make the privacy policy and the PDP system that makes admission control and policy decisions in response to a request from an entity wanting to access the personal information are needed. In this paper, the privacy controller system model handled under the internet Identity management system environment is proposed. The system has the easy interface of policy generation and the efficient policy decision process. The system applies and modifies to the XACML of OASIS group. We propose that the privacy policy is divided into the three policies, which are the user policy, the domain policy and the basic offering policy. To resolve the collision between the policies, we also propose the collision resolution policy.

A Model of Quality Grading Policy for Location Information (위치정보의 품질 등급화 정책 모델)

  • Lee, Jun-Wook;Nam, Kwang-Woo;Kim, Kwang-Soo
    • Journal of Korea Spatial Information System Society
    • /
    • v.7 no.3 s.15
    • /
    • pp.13-24
    • /
    • 2005
  • This paper proposes a model for the location information grading policy. Location information grading policy is that government would give a public notice of criterion for location information quality, and location information operators should elucidate the grade of provided location information. As the quality grade of services is provided in the 'terms of use' with the detailed quality specification and quality range, the user can understand the quality of location information, and can select more suitable service for their purposes. Additionally, the qualiy grading policy can enforce the location information operators and location service providers to support more stable and reliable service quality. In this paper, we propose the model of location information grades, the typical classification of quality, and the realitic policy applying model. Recent enacted 'Location Information Law' are expected to activate korean information market. In this situation, proposed location information grading policy take a role in protecting location privacy and improving the reliability of location information services.

  • PDF

Analysis on the Information Security Manpower Policy (정보보호인력 양성정책 분석)

  • Kim, Tae-Seong;Jeon, Hyo-Jeong
    • 한국디지털정책학회:학술대회논문집
    • /
    • 2003.12a
    • /
    • pp.241-250
    • /
    • 2003
  • With an increasing awareness of information security, the market demand for better information security goods and services causes shortage in well trained information security manpower. This study analyzes the priorities of the options available to the qualitative information security manpower training policy. The analysis is conducted through four hierarchies: goals, criteria, sub-criteria and alternatives for each of which priorities are developed through the rating approach of the Analytic Hierarchy Process (AHP). 3 criteria and 8 sub-criteria are involved in the four hierarchies. The analysis result indicates that the fundamental information security technology is the most desirable.

  • PDF

SEAndroid Policy Protection Architecture Design and Implementation in Android (안드로이드 시스템 하에서의 SEAndroid 정책 보호 기법 설계 및 구현)

  • Yoo, Seok-man;Park, Jin-Hyung;Lee, Dong-hoon
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.26 no.5
    • /
    • pp.1105-1119
    • /
    • 2016
  • Android includes SEAndroid as a core security feature. SELinux is applied to Android OS as a SEAndroid, because there exists structural differences between Linux and Android. Since the security of SEAndroid depends on the reliable policy if the policy is tampered by the attacker, the serious security problems can be occurred. So we must protect policies which are the most important thing in SEAndoroid. In this paper, we analyze the process of SEAndroid policy updating to find out vulnerabilities and study the attack points on policy tampering. And we propose the SPPA to detect whether the policy is modified by an attacker. Moreover, we prove the performance and the effect of our proposed method on mobile device.

Study of US/EU National Innovation Policies Based on Nanotechnology Development, and Implications for Korea

  • Lim, Jung Sun;Shin, Kwang Min;Yoon, Jin Seon;Bae, Seoung Hun
    • Journal of Information Science Theory and Practice
    • /
    • v.3 no.1
    • /
    • pp.50-65
    • /
    • 2015
  • Recently US/EU governments are utilizing nanotechnology as a key catalyst to support national innovation policies with economic recovery goals. US/EU nano policies have been serving as a global model to various countries, including Korea. So the authors initially seek to understand US/EU national innovation policy interconnections, and then find the role of nanotechnology development within. To strengthen national policy coherence, nanotechnology development strategies are under evolution as an innovation catalyst for promoting commercialization. To strategically support nano commercialization, EHS (Environmental, Health, Safety) and informatics are invested as priority fields to strengthen social acceptance and sustainability of nano enabled products. The current study explores US/EU national innovation policies including nano commercialization, EHS, and Informatics. Then obtained results are utilized to analyze weaknesses of Korean innovation systems of connecting creative economy and nanotechnology development policies. Then ongoing improvements are summarized focusing on EHS and informatics, which are currently prominent issues in international nanotechnology development.

Deduction of the Policy Issues for Activating the Geo-Spatial Big Data Services (공간 빅데이터 서비스 활성화를 위한 정책과제 도출)

  • Park, Joon Min;Lee, Myeong Ho;Shin, Dong Bin;Ahn, Jong Wook
    • Spatial Information Research
    • /
    • v.23 no.6
    • /
    • pp.19-29
    • /
    • 2015
  • This study was conducted with the purpose of suggesting the improvement plan of political for activating the Geo-Spatial Big Data Services. To this end, we were review the previous research for Geo-Spatial Big Data and analysis domestic and foreign Geo-Spatial Big Data propulsion system and policy enforcement situation. As a result, we have deduced the problem of insufficient policy of reaction for future Geo-Spatial Big Data, personal information protection and political basis service activation, relevant technology and policy, system for Geo-Spatial Big Data application and establishment, low leveled open government data and sharing system. In succession, we set up a policy direction for solving derived problems and deducted 5 policy issues : setting up a Geo-Spatial Big Data system, improving relevant legal system, developing technic related to Geo-Spatial Big Data, promoting business supporting Geo-Spatial Big Data, creating a convergence sharing system about public DB.

The regional information index in major cities of korea (지역정보화 정책 수립을 위한 지역정보화지수 작성에 관한 연구)

  • 지경용
    • The Journal of Korean Institute of Communications and Information Sciences
    • /
    • v.22 no.2
    • /
    • pp.381-391
    • /
    • 1997
  • This study aims at designing and calculating of the information index for efficient implementation of the regional information policy. The content and scope of this study are designing the struture of information index, measuring the informatization level in major cities of Korea and inducing rough idea for better performing of Korea information policy. Thereby we calculated tables ofinformation indexon seventy-eight cities in Korea from 1985 to 1994 and also basic strategy for better policy implementation. And we found that every citities share the benefit almost equal in the use of old media but not in that of new media. It can be expected that the bovernment will make a good use to get procedural validity in the course of designing some information policy based upon quantitative data.

  • PDF

A Study on the Typology of Social Insurance Policy Instruments in Korea (우리나라 사회보험 정책수단의 유형에 관한 연구)

  • Noh, Shi-Pyung
    • Journal of the Korea Society of Computer and Information
    • /
    • v.19 no.5
    • /
    • pp.109-117
    • /
    • 2014
  • This study tries to find the policy instruments that have used in the process of social insurance policy implementation. The results can be summarized as follows: First, in case of compulsory policy instrument, the government uses the regulation, public enterprise and government insurance in the process of implementing of all the social insurance policy. Second, in the case of mixed policy instrument, the government use the user' contribution in the process of implementing of all the social insurance policy but the subsidy was used in the process of implementing of the medical, pension, unemployment and long-term care insurance for the aged policy. Also, the information and discipline was used in the process of implementing of unemployment insurance policy and the partnership was used in the process of implementing of long-term care insurance for the aged policy. Third, in case of voluntary policy instrument, the government uses the family and community in the process of implementing of almost the whole social insurance policy.

How to Design Trade Policy under Asymmetric Information? (비대칭 정보하에 무역정책 설계)

  • Yang Seung Lee
    • Korea Trade Review
    • /
    • v.46 no.2
    • /
    • pp.107-119
    • /
    • 2021
  • Using a trade policy, government can shift profits from foreign firms to domestic firms. This paper will reexamine how asymmetric information can affect the equivalence of tariff and quota in a duopoly, where one domestic firm competes with one foreign firm. It can happen that the domestic firm has informational advantage against the government. Within this framework, the domestic firm has private information about own marginal cost as well as the foreign firm's. The domestic firm would exploit the advantage to draw a favorable policy from the government. When the government is misled, social welfare would decline. This paper will guide how the government can extract information from the domestic firm by offering a menu of tariff or quota. Previous studies showed that quota demands information more than tariff. With the principle of revealed information, the domestic firm chooses tariff (quota) if the marginal cost of foreign firm is low (high). The quota level will be high (low) if the marginal cost of domestic firm is high (low). To prevent misrepresentation, the domestic firm should be charged when quota is implemented. When the quota level is low, the domestic firm is charged additionally. This paper can contribute to the literature of trade policy and information.

A Comparative Analysis of the Legal Systems of Four Major Countries on Privacy Policy Disclosure (개인정보 처리방침(Privacy Policy) 공개에 관한 주요 4개국 법제 비교분석)

  • Tae Chul Jung;Hun Yeong Kwon
    • Journal of Information Technology Services
    • /
    • v.22 no.6
    • /
    • pp.1-15
    • /
    • 2023
  • This study compares and analyzes the legal systems of Korea, the European Union, China, and the United States based on the disclosure principles and processing policies for personal data processing and provides references for seeking improvements in our legal system. Furthermore, this research aims to suggest institutional implications to overcome data transfer limitations in the upcoming digital economy. Findings on a comparative analysis of the relevant legal systems for disclosing privacy policies in four countries showed that Korea's privacy policy is under the eight principles of privacy proposed by the OECD. However, there are limitations in the current situation where personal information is increasingly transferred overseas due to direct international trade e-commerce. On the other hand, the European Union enacted the General Data Protection Regulation (GDPR) in 2016 and emphasized the transfer of personal information under the Privacy Policy. China also showed differences in the inclusion of required items in its privacy policy based on its values and principles regarding transferring personal information and handling sensitive information. The U.S. CPRA amended §1798.135 of the CCPA to add a section on the processing of sensitive information, requiring companies to disclose how they limit the use of sensitive information and limit the use of such data, thereby strengthening the protection of data providers' rights to sensitive information. Thus, we should review our privacy policies to specify detailed standards for the privacy policy items required by data providers in the era of digital economy and digital commerce. In addition, privacy-related organizations and stakeholders should analyze the legal systems and items related to the principles of personal data disclosure and privacy policies in major countries so that personal data providers can be more conveniently and accurately informed about processing their personal information.