년 - 년
경제안보 체계 확립을 위한 사이버안보 거버넌스 개선방안 연구 : 일본 사례를 중심으로 KCI 등재
한국산업안보학회(구 한국산업보안연구학회) 한국산업보안연구 제15권 3호 2025.12 pp.359-387
※ 기관로그인 시 무료 이용이 가능합니다.
6,900원
오늘날 사이버위협은 단순한 기술적 차원을 넘어 국가안보, 경제안보 및 사회 전반의 질서와 직결되는 중대한 법적·정책적 과제로 인식되고 있다. 이에 대응하기 위하여 국제사회는 최초의 사이버범죄 국제조약인 「부다페스트 협약」을 채택하여 사이버범죄의 실체법적 규율, 전자적 증 거의 확보, 국가 간 형사사법 공조 절차 등 기본원칙을 제도화하였다. 일본은 이러한 국제적 규 범을 반영하여 「사이버보안기본법」을 제정하고, 내각 사이버보안센터(NISC)를 설치함으로써 중 앙집중적 거버넌스 체계와 민·관 협력 구조를 제도적으로 정착시켰다. 반면 우리나라는 사이버 위협 대응 시 공공ㆍ민간 영역이 분리된 이원화 구조가 유지됨으로써 권한과 책임의 분산, 협력 체계의 비효율성이 지속적으로 지적된다. 이에 국가 차원의 단일 사이버안보 컨트롤타워를 마련 하고, 권한과 책임을 명확히 규정하는 동시에, 사이버 위협 대응 역량 강화를 위한 「사이버안보 기본법(안)」의 제정 필요성이 제기되고 있다. 따라서 본 연구는 부다페스트 협약의 규범적 시사 점 분석과 일본의 제도적 경험을 검토함으로써, 우리나라의 사이버안보 거버넌스 개선방안을 도 출하는 데 목적을 가지고 국제공조 참여 강화를 위한 「형사소송법」 개정, 사이버안보 컨트롤타 워 설립, 민·관·군 협력체계의 법제화 방안을 중심으로 논하였다. 이를 통하여 국제공조 체계 를 강화하고, 현재 우리나라가 직면한 사이버 위협에 대응할 수 있는 법적·제도적 기반을 확립 하는 데 기여하고자 한다.
Cyber threats today are recognized not only as technical issues but as significant legal and policy challenges affecting national security, economic stability, and social order. In response, the international community adopted the Budapest Convention on Cybercrime, which establishes principles for regulating cybercrime, securing electronic evidence, and facilitating cross-border judicial cooperation. Japan has implemented these norms through the Basic Act on Cybersecurity and the National Center of Incident Readiness and Strategy for Cybersecurity (NISC), creating a centralized governance system and public–private cooperation framework. In contrast, South Korea’s dual public–private structure disperses authority and hampers collaboration, highlighting the need for a unified national control tower and the draft Basic Act on National Cybersecurity. This study examines the normative implications of the Budapest Convention and Japan’s institutional experience to propose improvements in South Korea’s cybersecurity governance, focusing on legal reforms, a centralized control tower, and a public–private–military collaborative framework. These measures aim to strengthen international cooperation and enhance national capacity to respond to evolving cyber threats.
[NRF 연계] 한국통신학회 ICT Express Vol.10 No.4 2024.08 pp.935-958
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
Digital twins (DTs) are an emerging digitalization technology with a huge impact on today’s innovations in both industry and research. DTs can significantly enhance our society and quality of life through the virtualization of a real-world physical system, providing greater insights about their operations and assets, as well as enhancing their resilience through real-time monitoring and proactive maintenance. DTs also pose significant security risks, as intellectual property is encoded and more accessible, as well as their continued synchronization to their physical counterparts. The rapid proliferation and dynamism of cyber threats in today’s digital environments motivate the development of automated and intelligent cyber solutions. Today’s industrial transformation relies heavily on artificial intelligence (AI), including machine learning (ML) and data-driven technologies that allow machines to perform tasks such as self-monitoring, investigation, diagnosis, future prediction, and decision-making intelligently. However, to effectively employ AI-based models in the context of cybersecurity, human-understandable explanations, and their trustworthiness, are significant factors when making decisions in real-world scenarios. This article provides an extensive study of explainable AI (XAI) based cybersecurity modeling through a taxonomy of AI and XAI methods that can assist security analysts and professionals in comprehending system functions, identifying potential threats and anomalies, and ultimately addressing them in DT environments in an intelligent manner. We discuss how these methods can play a key role in solving contemporary cybersecurity issues in various real-world applications. We conclude this paper by identifying crucial challenges and avenues for further research, as well as directions on how professionals and researchers might approach and model future-generation cybersecurity in this emerging field.
A comprehensive review of explainable AI in cybersecurity: Decoding the black box
[NRF 연계] 한국통신학회 ICT Express Vol.11 No.6 2025.12 pp.1200-1219
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
Artificial Intelligence (AI) has been used extensively in all aspects of everyday life among people in recent times. Many techniques utilizing machine learning (ML) and deep learning (DL) models are being presented in this rapidly growing field of study. Most such models are generally regarded as “Black-Box” models since they are intrinsically complex and lack interpretable explanations for their decisions and conclusions. The lack of transparency increases the issue in the field of cybersecurity as implementing critical decisions in a system that cannot provide explanations for itself offers some evident risks. The lack of interpretability and transparency in existing AI techniques would make users distrust the models used to defend against cyberattacks, particularly given the increasingly complex and diverse nature of cyberattacks. Thus, Explainable Artificial Intelligence (XAI) must be utilized to construct cyber security models that are more understandable while keeping high accuracy and that enable users to understand, be reliable, and manage the future of cyber defence systems. This study provides a comprehensive survey of existing literature on using XAI to mitigate these challenges of cybersecurity black-box models. It emphasizes the significance of explainability in boosting faith and transparency in AI-driven systems and presents a thorough taxonomy of XAI techniques and technologies for cybersecurity applications. The study describes the evaluation criteria that are used to evaluate the effectiveness of XAI models, addresses different kinds of attacks like malware, phishing, and network intrusions, and shows how XAI techniques may mitigate these risks by providing a comprehensible understanding of model decisions. Along with the real-world case studies, it also explores the industrial applications of XAI in cybersecurity and examines the challenges in implementing XAI technology. The survey concludes with a review of the limitations of the existing XAI techniques and makes recommendations for future research, such as the requirement for more reliable XAI frameworks that can function in real-time and across a variety of cyber threat situations.
[NRF 연계] 한국통신학회 ICT Express Vol.11 No.5 2025.10 pp.875-880
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
With the increasing sophistication of cyber threats, traditional Intrusion Detection Systems (IDS) often fail to adapt to evolving attack patterns, leading to high false positive rates and inadequate detection of zero-day attacks. This study proposes the Deep Q-Learning Intrusion Detection System (DQ-IDS), a novel reinforcement learning (RL)-based approach designed to dynamically learn network attack behaviors and continuously enhance detection performance. Unlike conventional machine learning (ML) and deep learning (DL)-based IDS models that depend on static, pre-trained classifiers, DQ-IDS employs Deep Q-Networks (DQN) with experience replay and adaptive ε-greedy exploration to autonomously classify benign and malicious network traffic. The integration of experience replay mitigates catastrophic forgetting, while adaptive exploration ensures an optimal trade-off between learning efficiency and threat detection. A reward-driven training mechanism reinforces correct classifications and penalizes errors, thereby reducing both false positive and false negative rates. Extensive empirical evaluations on real-world network datasets demonstrate that DQ-IDS achieves a detection accuracy of 97.18%, significantly outperforming conventional IDS solutions in both attack detection and computational efficiency. This work introduces a paradigm shift toward adaptive, self-learning cybersecurity systems capable of real-time, robust threat mitigation in dynamic network environments.
차량 사이버보안 법규 준수를 위한 프레임워크 개발 : Cybersecurity Requirement Finder KCI 등재
한국ITS학회 한국ITS학회논문지 제22권 제6호 통권110호 2023.12 pp.299-312
※ 기관로그인 시 무료 이용이 가능합니다.
4,600원
최근 ECU(Electronic Control Unit)는 단순한 편의 기능을 넘어 여러 기능이 하나로 통합되고 있다. 이에 따라 ECU는 이전보다 더 많은 기능과 외부 인터페이스를 갖게 되었고, 다양한 사이버 보안 문제가 발생하고 있다. UNECE(United Nations Economic Commission for Europe) WP. 29는 증가하는 차량 사이버보안에 대한 위협을 고려해 UN Regulation No.155를 발표하여 차량 사이버 보안 관리 체계에 대한 국제 기준을 마련했다. 국제 기준에 따르면 차량 제조업체는 2022년 7월부터 CSMS(Cybersecurity Management System)를 구축하고, VTA(Vehicle Type Approval)를 받 아야 한다. 그러나 국내에서는 이에 대한 준비가 미흡해 시행 시기를 조정해야 한다는 의견이 제기되었다. 따라서 본 논문에서는 요구사항의 CSMS 현황을 확인하기 위한 체크리스트와 식별 된 갭(Gap)을 완화하기 위한 다양한 차량 보안 솔루션을 매핑 시켜주는 웹 기반의 솔루션을 제안한다.
Recently, the electronic control unit (ECU) has been integrating several functions into one beyond simple convenience functions. Accordingly, ECUs have more functions and external interfaces than before, and various cybersecurity problems are arising. The United Nations Economic Commission for Europe (UNECE) World Forum for Harmonization of Vehicle Regulations (WP.29) issued UN Regulation No.155 to establish international standards for vehicle cybersecurity management systems in light of the growing threats to vehicle cybersecurity. According to international standards, vehicle manufacturers are required to establish a Cybersecurity Management System (CSMS) and receive a Vehicle Type Approval (VTA). However, opinions were raised that the implementation period should be adjusted because domestic preparations for this are insufficient. Therefore, in this paper, we propose a web-based solution that maps a checklist to check the status of CSMS in the requirement and various vehicle security companies and solutions to mitigate the identified gap.
한국차세대컴퓨팅학회 한국차세대컴퓨팅학회 학술대회 ICNGC 2025 The 11th International Conference on Next Generation Computing 2025 2025.12 pp.349-352
The dramatic increase in cyberattacks targeting government agencies, critical infrastructure, and defense contractors has revealed the inefficiencies of traditional software development life-cycle (SDLC) models. Most SDLC models do not indicate security explicitly, hence secure software development practices need to be infused into each phase so as to limit the exploitation of security loopholes and safeguard the security of high‑security systems. This document puts forward SSDF‑HS, a secure software development framework for high‑security organizations. The comparative study of various hypothetical projects reveals that SSDF‑HS significantly decreases vulnerability density and mean time to remediate while also enhancing compliance scores. The mathematical risk‑reduction model illustrates the lowering of residual risk when security is integrated early (shift‑left). The framework assists high‑security organizations in writing software that is inherently secure and can withstand future threats.
Analysis of Cybersecurity Threats and Vulnerabilities in Metaverse Environment KCI 등재
한국융합보안학회 융합보안논문지 제22권 제3호 2022.09 pp.19-24
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
메타버스는 ‘가상’, ‘초월’ 등을 뜻하는 영어 단어 '메타'(Meta)와 우주를 뜻하는 '유니버스'(Universe) 의 합성어로, 현실세계와 같은 사회·경제·문화 활동이 이뤄지는 3차원의 가상세계를 가리킨다. 메타버스는 가상현실(VR, 컴퓨터로 만들어 놓은 가상의 세계에서 사람이 실제와 같은 체험을 할 수 있도록 하는 최 첨단 기술)보다 한 단계 더 진화한 개념으로, 아바타를 활용해 단지 게임이나 가상현실을 즐기는 데 그치 지 않고 실제 현실과 같은 사회·문화적 활동을 할 수 있다는 특징이 있다. 하지만, 이에 대한 보안 이슈가 많아 발생하고 있어 사이버보안 안전성 여부를 확인할 필요가 있다. 본 논문은 메타버스 환경에서 발생할 수 있는 사이버보안의 위협과 취약점을 분석하여 안전성을 확인 한다.
Metaverse is a compound word of the English words 'meta', meaning 'virtual' and 'transcendence', and 'universe' mea ning the universe. dimensional virtual world. Metaverse is a concept that has evolved one step further than virtual reality (VR, a cutting-edge technology that enables people to experience life-like experiences in a virtual world created by a com puter). It has the characteristic of being able to engage in social and cultural activities similar to reality. However, there a re many security issues related to this, and cybersecurity vulnerabilities may occur. This paper analyzes cybersecurity thre ats that may occur in the metaverse environment and checks vulnerabilities.
What Matters in Cybersecurity? The Role of Citizen Perception and Attributes
인하대학교 글로벌e거버넌스연구소 IJPGN Volume 3 Number 1 2015.06 pp.1-22
※ 기관로그인 시 무료 이용이 가능합니다.
5,800원
This study aims to investigate the extent of citizen cyber threat awareness and the factors that influence behaviors to counter these threats. Using sur-vey data conducted by the South Korean government, on a stratified sam-ple of 6,000 citizens, this study found that the general public was well aware of the presence of various cyber threats. Citizens perceived that these threats have a high likelihood of occurring to them. While this study found a positive relationship between the perception of threats and security actions, most citizens only took a few essential security measures. These findings reveal an online environment where the responsibility of online security falls chiefly on individual citizens. Ultimately, this creates a situa-tion that leaves citizens vulnerable; there is high level of cyber threat awareness, but a low level of preventative actions. This study discusses policy implications related to these findings and citizen perception of the role of government in cybersecurity.
한국경영정보학회 한국경영정보학회 정기 학술대회 AX 시대 데이터 경제와 비즈니스 혁신: 가치창출 경영과 융합 생태계 2026.06 pp.389-394
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
Cybersecurity compliance remains a major challenge because employees’ daily decisions often determine whether security policies are effectively implemented. While organizations rely on technical safeguards, mandatory procedures, and awareness training, these approaches may increase cognitive burden and security fatigue, leading users to delay, ignore, or bypass recommended security practices. This conceptual paper proposes a behavioral nudging framework for cybersecurity compliance. Drawing on behavioral decision theory and the socio-technical perspective of information systems, it focuses on three psychological mechanisms: cognitive ease, digital trust, and security fatigue. The framework suggests that nudges such as visual framing, social proof, and secure default settings may enhance compliance by increasing cognitive ease and digital trust. However, security fatigue may weaken these effects by reducing users’ motivation to engage with security recommendations.
Analysis of Strategic Priorities for Strengthening Cybersecurity Capability of Cambodia KCI 등재
한국디지털정책학회 디지털융복합연구 제17권 제10호 2019.10 pp.93-102
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
본 논문은 캄보디아 정부의 사이버보안 전략의 우선순위를 결정하는 것을 목적으로 한다. 이를 위해 ITU 국가 이익 모델에서 사이버보안의 4개 정책요인을 채택하고, 그 다음에는 사이버보안 분야를 리드하는 8 개 선진 국의 우수사례를 벤치마킹하여 도출한 7개 실행전략 대안으로 AHP 연구모델을 수립하였다. AHP 연구모델을 바탕으로 설문지를 작성하고 19명의 전문가들이 캄보디아의 사이버보안 전략의 우선순위를 평가하였다. 데이터 분석 결과 캄보디아 정부의 사이버보안 핵심 정책요인은 국토방어, 경제복지, 가치증진 및 유리한 세계질서 순으로 평가되었으며, 이들을 구현하는 주요 대안은 사이버보안 법제화, 역량개발, 중요 정보 인프라에 대한 사이버 공격 방지 순으로 판명되었다. 본 연구는 캄보디아 정부의 사이버보안 역량을 강화할 수 있는 전략적 우선순위와 실행계획을 수립하는데 기여할 수 있다.
This paper aims to set the priorities for the cybersecurity strategy of Cambodian government. To this end, we built a AHP research model by adopting 4 factors from the ITU national interests model and selecting 7 strategies from best practices of 8 countries leading the cyber security. Using a questionnaire, 19 experts evaluated Cambodia's cybersecurity strategy priorities. The key policy factors were evaluated in the order of homeland defense, economic welfare, value promotion and favorable world order. Their strategic alternatives were identified in the order of legislation, capacity building, and cyber attack prevention for critical infrastructure. This study will contribute to setting the strategic priorities and feasible action plans to strengthen Cambodia’s cybersecurity capabilities.
사이버안보법 제정을 위한 국내 사이버안보 법률안 연구 KCI 등재
한국융합보안학회 융합보안논문지 제13권 제6호 2013.12 pp.91-98
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
오늘날 사이버공격은 국가안보를 위협하는 요소가 되고 있다. 최근의 사이버안보 정책으로서 국가 사이버안보 종합대책이 발표되었으나 현행 법제도에 의하면 온전한 법적 근거를 갖추고 그러한 대책들을 구현하기에는 어려운 부분이있다. 현재 사이버안보 관련 법제도는 부문별로 별도의 법령이 적용되고 있으며, 이에 따라 사이버안보 추진체계도 분산되어 부문별 장벽에 의한 문제점들이 발생한다. 이러한 여러 가지 문제점들을 근본적으로 해결하기 위해서는 기존 법률의 개정보다는 새로운 사이버안보법의 제정이 더욱 적절한 방식이다. 한편 2013년에는 국회에서 사이버안보 강화를위한 몇 가지 법률안이 발의되었다. 이 법률안들에 대한 분석을 통하여 바람직한 내용적 요소들을 도출하고, 이를 반영한 새로운 사이버안보법을 제정하는 것이 사이버안보 관련 법제도 정비의 실현 가능성을 높일 것이다. 향후 사이버안보법 제정 논의의 시발점이자 새로운 사이버안보법의 기초로 활용될 수 있다는 점에서 이 법률안들은 큰 의미가 있다.
Cyber attacks threaten the national security in this day and age. The government of the Republic of Korearecently released the National Cyber Security Comprehensive Countermeasures as a new cybersecurity policy. Butcurrent legal system cannot provide legal basis for the implementation of such measures. The current legal systemrelated to cybersecurity is applied in each sector, thus the governance system in cybersecurity is separate. So thereare many problems in the governance system in cybersecurity. To solve these problems fundamentally, it is righterto make a new cybersecurity law than to revise existing laws. Meanwhile, lawmakers proposed some bills inCongress to strengthen the cybersecurity in Korea in 2013. It will increase possibility of legislation of cybersecurityact to make a law through the analysis of these bills and to derive the essential elements from those. and to reflectthese in the new cybersecurity act.
특허데이터를 활용한 자동차 사이버보안 강화방안 연구 - 특허분석을 통해 자동차 사이버보안 강화필요한 신규기술 탐색 및 보안요구사항 탐색 - KCI 등재
한국융합보안학회 융합보안논문지 제23권 제5호 2023.12 pp.91-100
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
최근 차량은 다양한 ICT 기술을 도입하고 활용하는 방향으로 변화하고 있다. 이에 따라 자동차에는 다수의 소프트웨 어가 설치되었고, 그에 따라 해킹 등 사이버 보안 위협 문제가 발생되고 있다. 이 때문에 각국은 자동차 사이버보안 확 보를 위한 법규정을 마련하고 있으며, 법규정 내 위협기술에 대해 리스크 완화방안 준비가 강제되고 있다. 다만 자동차 기술의 발전 속도에 비해 법규정의 제정은 상대적으로 느릴 수 밖에 없기에, 지속적으로 자동차 기술 발전 트렌드 파악 을 통해 법규정을 개정할 필요가 있다. 본 연구에서는 최신 자동차 사이버보안 특허출원을 탐색 및 분석하여 신규로 자 동차 사이버보안의 보완이 필요한 기술 분야를 탐색한다. 또한 신규 기술분야에 대해서는 위협기술, 보안요구사항을 특 허분석을 통해 제시하고자 한다. 본 연구는 자동차 사이버보안이 강화될 필요가 있는 기술분야를 사전에 도출함으로써, 법규정 개정의 필요성에 대한 논리를 제공하고, 자동차 제조사로 하여금 발생 예상되는 위협기술을 사전에 준비할 수 있도록 하는데 기여하고자 한다.
Vehicles are changing in the direction of utilizing various ICT technologies. Accordingly a number of software ha s been installed in vehicles, resulting in cybersecurity threats such as hacking. So each country is preparing legal re gulations to secure vehicles cybersecurity. However, the enactment of legal regulations is bound to be relatively slo w compared to the speed of development of vehicles technology, so it is necessary to revise the legal regulations by continuously monitoring of vehicles technology development trends. In this study, we search and analyze the latest v ehicles cybersecurity patent applications to explore new technologies that require supplementation of vehicles cyberse curity. Threat technologies/security requirements for new technologies are presented through patent analysis
정보기관의 사이버안보 역할 정립에 관한 연구 - 사이버안보관련 법안 제ㆍ개정안을 중심으로 - KCI 등재
한국융합보안학회 융합보안논문지 제18권 제4호 2018.10 pp.45-52
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
제4차 산업혁명 시대가 진전되어 정보통신기술이 획기적으로 발전하면서 사이버위협은 점점 더 지능적이고 고도화될 것이다. 그렇기 때문에 그 위협에 대한 대비책을 마련하면서 사고가 발생할 경우에도 체계적이고 신속한 조치를 취하기 위해서는 정보기관의 역할이 중요하다고 할 것이다. 그러나 우리나라는 이와 관련된 ‘국가사이버안보법안’ 제정이나 「국가정보원법」개정에 대한 논의가 지지부진하여 사이버위협을 대응하는데 어려움이 있는 실정이다. 이에 본 논문에 서는 현행 법 체계상 정보기관의 사이버안보 기능, 최근의 법 제ㆍ개정 논의 동향과 우리 실정에 맞는 정보기관의 역할 에 대한 시사점을 살펴본 후 향후 사이버안보 수행체계 보강을 위한 정보기관의 역할 정립 방안으로 사이버안보에 관한 첩보수집․분석 집중, 사이버위협 예측ㆍ대응역량 제고, 법과 원칙 준수를 위한 법적 토대 구축 등을 제시하고자 한다.
As the era of the 4th Industrial Revolution has progressed and the information and communication technologies have developed dramatically, the cyber threats will gradually become more intelligent and sophisticated. Therefore, in order to take systematic and prompt action in case of an accident while preparing measures against the threat, the role of intelligence agency is important. However, Korea is having difficulty in responding to the threats due to the lack of support for the national cybersecurity bill or the amendment bill of the National Intelligence Service. In this paper, I examine the cybersecurity function of the intelligence agency, the recent debate trends, and implications for the role of intelligence agency in our current situation. And then I intend to suggest some measures such as concentration on information gathering and analysis, enhancement of cyber threat prediction and response capacity, and strengthening of legal basis as a way to establish the role of intelligence agency for reinforcement of cybersecurity performance system.
독일 사이버안보 국가전략 : 안보화를 넘어 군사화로 KCI 등재
한독사회과학회 한독사회과학논총 제30권 제2호 2020.06 pp.3-32
※ 기관로그인 시 무료 이용이 가능합니다.
7,000원
본 연구는 독일의 사이버안보 전략이 안보화를 넘어 군사화로 이동하고 있다고 주장한다. 군사화는 안보화된 문제에 대응하기 위해 군사적 수단에 우선순위를 부여하는 극단화된 안보화를 말하며 관념적인 측면과 물질적인 측면 모두에서 발생한다. 군사화는 안보화된 문제 해결을 위한 다양한 대안들과 구별되는 익숙한 군사적 표현과 담론형성과 유지를 통해 발생할 뿐만 아니라 사이버안보 군 관련 조직을 형성하고 이를 실행하기 위한 제도적 측면을 통해 구체화된다. 2011년 이후 독립적인 사이버안보전략을 수립하고 주요기반시설에 대한 보안에 중점을 두며 군의 역할은 보충적인 역할로 제한했던 독일은 2016년 새로운 사이버안보전략을 통해 독일연방군의 적극적인 참여와 이를 위한 제도적 변화를 모색했다. 동시에 주요 정책결정자들의 사이버 위협 담론과 군사적 조치 도입을 정당화하는 담론이 동반되었다. 앞으로 국가 사이버안보의 발전 방향은 군사화의 심화를 예상할 수 있다는 점에서 국경에 근거한 영토성의 개념으로 담아낼 수 없는 사이버 공간의 위협에 대한 대응이 전통적 지정학 발상에 근거할 때 나타날 수 있는 과잉 안보화를 넘어 과잉 군사화로 향할 가능성에 대한 비판적 고려가 필요하다.
This study argues that German cybersecurity national strategy has been moving beyond security toward militarization. Militarization refers to an hyper-securitization that prioritizes military means to respond to security threats, and operates in both the ideational and material aspects. Militarization not only occurs through familiar military expressions and discourse formation and maintenance that is distinguished from various responses to solving security problems, but is also embodied through institutional aspects to form and implement cybersecurity-relevant organizations. Germany established an cybersecurity national strategy since 2011, focusing on security for critical infrastructure, and limits the role of the military to supplementary. However, Germany's new cybersecurity national strategy in 2016 sought active participation by the Bundeswehr(German Federal Forces) and institutional changes. At the same time, high-ranked policy-makers were accompanied by discourses of cyber threat that justified the utilization of military measures. The direction of the development of national cybersecurity can predict the deepening of militarization. It is necessary to critically consider the possibility of moving toward hyper-militarization beyond the hyper-securitization if countering the threat of cyberspace, which cannot be captured by the concept of territoriality, arose with traditional geopolitics.
인공지능 기반 조직 내 사이버보안 감시의 규범적 균형점 모색 : 4대 기술 메커니즘을 중심으로 KCI 등재
한국융합보안학회 융합보안논문지 제26권 제3호 2026.06 pp.157-167
※ 기관로그인 시 무료 이용이 가능합니다.
4,200원
본 연구는 인공지능(AI) 시대에 확산되는 조직 내 감시·검열 메커니즘을 분석하고, 국내외 실제 사례를 통해 사회적·윤리적 함의를 도출한다. DLP 시스템, EDR 솔루션, AI 기반 생산성 모니터링, 자동 검열 메커니즘을 포함한 네 가지 감시 체계를 분석하고, 프랑스 아마존, 스타벅스 등 국내외 사례를 비교 검토하였다. 연구 결과, 과도한 AI 기반 감시·검열은 근로자의 프라이버시 침해, 표현의 자유 위축, 데이터 권력 불균형 등 윤리적 문제를 야기하며, 현행 법제의 미비점이 나타났다. 이에 GDPR의 DPIA 제도 도입, 기업 감시 최소화 원칙, 근로자 참여 보장 등 법적·제도적 개선 방안과 함께 국제 AI 윤리 원칙의 조직내 적용 방안을 제시한다. 또한 프라이버시 중심 설계(Privacy by Design)와 직장 내 AI 감시 영향평가(WASIA) 기술 규격을 제안하여 규범적 균형의 기술적 구현 방안을 함께 제시한다.
This study analyzes the mechanisms of organizational surveillance and censorship expanding in the age of artificial intelligence (AI), and derives socio-ethical implications through domestic and international cases. Four surveillance mechanisms—DLP systems, EDR solutions, AI-based productivity monitoring, and automated censorship—are analyzed, and cases from Amazon France, Starbucks, and Korean companies are comparatively reviewed. The findings indicate that excessive AI-based surveillance and censorship raises ethical concerns including privacy violations, suppression of freedom of expression, and data power imbalances, while inadequacies in current legal frameworks are identified. This paper proposes legal and institutional improvements including the introduction of GDPR-style DPIA, adoption of a monitoring minimization principle, and guarantees of worker participation, along with recommendations for applying international AI ethics principles within organizations. Additionally, this study proposes a technical implementation framework based on Privacy by Design principles and introduces the Workplace AI Surveillance Impact Assessment (WASIA) as a structured technical specification for achieving normative balance in practice.
항공 사이버 위협 대응을 위한 항공기 사이버보안(Aircraft Cyber Security) 강화방안 : 항공기 사이버 복원력 중심으로 KCI 등재
한국보안관리학회(구 한국경호경비학회) 시큐리티 연구 제85호 2025.12 pp.35-60
※ 기관로그인 시 무료 이용이 가능합니다.
6,400원
4차 산업 혁명과 함께 항공 산업의 항공 시스템들의 사이버 위협은 높아지고 있다. IT기 술 발전으로 항공시스템 뿐만 아니라, 항공기의 SW 비중이 계속 높아지고 있다. 해외 정부 기관과 항공사들은 항공 시스템뿐만 아니라, 항공기 사이버 보안 위협에 대한 보안대책을 강화하고 있다. 그러나 국내에서는 각종 항공 시스템의 보안활동에 비해, 항공기 사이버보 안 대응체계와 연구는 미비한 실정이다. 항공기는 수많은 국제 보안인증 기준에 따라 제조되고 있다. 그러나 보안 인증을 갖추었 다고 항공기 시스템이 모두 안전한 것은 아니다. 최근 발생한 국내 통신사들의 해킹사고를 보면 이해할 수 있다. 결국, 항공기 시스템 관리가 중요하다. 따라서 이번 연구에서 항공기 사이버보안 체계를 제시하여, 항공기 시스템 관리체계 필요성과 항공기 사이버 복원력에 대해 논하고자한다. 이 연구를 초석으로, 국내에서 항공기 사이버보안에 대해 연구가 확산 되기를 바란다.
With the advent of the 4th Industrial Revolution, cyber threats to aviation systems in the aviation industry are increasing. Advances in IT technology are steadily increasing the proportion of software in aircraft, not just aviation systems. Overseas Government agencies and airlines are strengthening security measures against cybersecurity threats, not only in aviation systems but also in aircraft. However, compared to the security activities of various aviation systems, domestic research and activities on aircraft cybersecurity are lacking. Aircraft are manufactured according to numerous international security certification standards. However, security certification does not guarantee the safety of all aircraft systems. The recent hacking incidents at domestic telecommunications companies illustrate this point. Ultimately, aircraft system management is crucial. Therefore, this study proposes an aircraft cybersecurity system and discusses the necessity of an aircraft system management system and aircraft cyber resilience. We hope this study will serve as a foundation for expanding research on aircraft cybersecurity in Korea.
대학 내 사이버 보안을 위한 제도·기술적 관점에서의 전략 KCI 등재
한국융합보안학회 융합보안논문지 제24권 제3호 2024.09 pp.187-193
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
AI와 IoT의 발전으로 사이버 보안 위협은 급격히 증가하고 있다. 사이버 공격의 수단과 목적이 진화함에 따라 대학도 모든 주요 산업과 마찬가지로 심각한 사이버 보안 문제에 직면하고 있는 상황이다. 대학은 학생들의 개인정보, 연구 데이터, 지적 재산 등 방대한 양의 민감한 정보를 보유하고 있어 사이버 위협의 주요 대상이 된다. 이에 본 논문에서는 대학의 기관장과 정 책 입안자들이 사이버 보안 태세를 강화하는데 도움이 되는 제도 및 기술적 관점에서의 사이버 보안 전략을 제시하고자 한다. 연구에서는 지금까지의 사이버 공격 흐름을 통해 동향을 검토하고, 랜섬웨어 및 AI 기반 맬웨어와 같은 고도화된 위협 증가에 대응하기 위해 거버넌스, 정책 개발, 위험 관리 및 FIDO와 AI 기반 기술적 보안 시스템 구축을 제시한다.
With the advancement of AI and IoT, cybersecurity threats have increased dramatically. As the methods and objectives of cyber-attacks evolve, universities, like all major industries, are facing serious cybersecurity issues. Universities hold vast amounts of sensitive information such as students’ personal data, research data, and intellectual property, making them prime targets for cyber threats. Therefore, this paper aims to present cybersecurity strategies from both institutional and technical perspectives to help university leaders and policymakers enhance their cybersecurity posture. The study reviews current trends through the flow of cyber-attacks and proposes governance, policy development, risk management, and the establishment of FIDO and AI-based security systems to respond to the increase in sophisticated threats such as ransomware and AI-based malware.
인적정보(HUMINT) 역량 강화를 통한 사이버 안보위협 및 범죄대응전략 KCI 등재
한국경찰연구학회 한국경찰연구 제13권 제4호 2014.12 pp.289-314
※ 기관로그인 시 무료 이용이 가능합니다.
6,400원
최근 들어 미국-중국, 유럽-러시아, 아랍-이스라엘간에 지속적인 사이버공격이 시도되고 있으며, 우리나라의 경우 북한에서 시도한 것으로 추정되는 심각한 사이버상의 테러 혹은 공격사례들이 확인되고 있다. 이와 같은 사이버테러나 관련범죄에 대한 효과적인 대응전략으로 인적정보수집(HUMINT) 역량을 강화해야 한다. 네트워 크상에서의 공격이기에 온라인상에서의 기술적인 대응만으로 위협세력이나 범죄집단을 통제할 수 있다는 안 일한 태도는 수정되어야 한다. 사이버 안보를 위협하는 대부분의 공격 배후에는 그러한 공격이나 범행을 계획하고 실행하는 ‘인간의 행위’가 있기 때문이다. 그들의 동향에 대한 정보를 사전에 제대로 파악하지 못한다면 지속적으로 사이버안보를 위협 하는 공격에 대해서 무방비 상태에 놓이게 되며, 피해가 야기된 이후, 사후 대응에 의존할 수 밖에 할 수 없다. 또한 인적 정보활동은 대체로 정보원(informant)이나 내부인의 협조로 이루어진다. 그러므로 충분한 인적정보 수집이 이루어지지 않는다면 완벽하게 사이버테러나 범죄를 사전에 감지, 차단할 수 없다. 그리고 인적정보 수집 역량을 강화하기 위해서는 전문인력채용, 사이버테러나 관련 범죄대응 기관들, 즉 각급 정보보안기관들 의 통합이나 협업, 해외정보수집 강화, 전문화 교육과정 등이 필요하다.
Recent intelligence reported that cyber-attacks have occurred between US and China, Europe and Russia, Arab and Israel while serious cyber-attacks occurred by north-Korea have been identified. In order to respond to cyber terror and its relevant crimes effectively, it is imperative to enhance the HUMINT (Human Intelligence). Existing counter measure of cyber-attacks focuses on technological response. However, technological response should not completely control the risky group and criminal organization. Beyond cyber-attacks on national security, there is a human behavior that makes a plan and commits the attacks and crimesWithout identifying those behaviors in advance, our cyber security system will be stayed in vulnerable. It has to depend on reactive response. HUMINT activities are mainly done through cooperation of informant or insider. Detection and interception of cyber-terror or crime cannot be done without sufficient HUMINT activities. It is imperative to cooperate among cyber-terror or cyber-crime response agencies in order to enhance the HUMINT capability. Thus, integration of intelligence or security agencies, enhancement of overseas intelligence capability and professional training are essential.
사이버공간에서의 거부적 억제를 위한 사이버보안 대응전략 연구 : 베트남전 한국군의 대게릴라전술을 중심으로 KCI 등재
한국융합보안학회 융합보안논문지 제26권 제3호 2026.06 pp.237-246
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
현대 사이버위협은 고도화된 지능형 지속 위협의 형태로 진화함에 따라, 기존의 경계기반 보안모델의 한계가 드러나고 있다. 특히 공격자는 저비용ㆍ고효율의 비대칭성을 활용하여 장기간 은밀히 침투하며, 내부 이동과 권한 상승을 통해 핵심 자산에 접근함으로써 방어자의 대응을 무력화한다. 이는 현대 사이버공격이 비정규전, 특히 게릴라전과 전략적·전술적 유사성을지님을 보여준다. 본 연구는 게릴라전과 사이버전의 공통 특성을 분석하고, 베트남전에서 한국군이 운용한 대게릴라전술인 중대전술기지와 민사심리전을 각각 제로트러스트 아키텍처와 조직 내부 보안 거버넌스와 연계하여 사이버공간에서의 거부적 억제 전략을 제시하였다.
As modern cyber threats evolve into sophisticated Advanced Persistent Threats, the limitations of traditional perimeterbased security models are being revealed. In particular, attackers exploit the asymmetry of low-cost and high-efficiency to infiltrate covertly over a long period, and neutralize the defender's response by accessing core assets through lateral movement and privilege escalation. This shows that modern cyberattacks possess strategic and tactical similarities with irregular warfare, especially guerrilla warfare. This study analyzes the common characteristics of guerrilla warfare and cyber warfare, and presents a deterrence-by-denial strategy in cyberspace by linking the “Company Tactical Base” and “Civic Psychological Warfare”—which are counter-guerrilla tactics employed by the Korean military during the Vietnam War—with Zero Trust Architecture and organizational internal security governance, respectively.
자율주행 레벨 3 (조건부 자율화) 이상 자동차의 데이터 거버넌스와 사이버보안 : 치안현장 분석 및 활용 모델을 중심으로 KCI 등재
한국경찰연구학회 한국경찰연구 제25권 제1호 2026.03 pp.153-174
※ 기관로그인 시 무료 이용이 가능합니다.
5,800원
본 연구는 레벨 3(조건부 자동화) 이상 자율주행자동차에서 생성되는 자동운전시스 템(ADS) 데이터를 중심으로, 데이터 거버넌스와 사이버보안 쟁점을 분석하고 치안현 장 적용을 위한 통합적 활용 모델을 제시하는 것을 목적으로 한다. 자율주행자동차는 센서·통신·인공지능이 결합된 대표적 사이버-물리 시스템으로, 운행 과정에서 대용량· 고빈도·시계열 데이터를 생성한다. 이러한 데이터는 교통사고 조사, 형사책임 판단, 보 험 분쟁 해결, 범죄 수사 및 재난 대응에서 핵심 증거로 활용될 수 있는 잠재력을 가진 다. 그러나 자율주행 데이터의 접근·보존·제출을 둘러싼 법·제도적 기준은 아직 충분히 정립되지 않았으며, 네트워크 해킹, GPS 스푸핑, 센서 교란 등 다양한 사이버보안 위협 과 함께 프라이버시 침해 및 감시사회화 우려가 제기되고 있다. 이에 본 연구는 국제규범과 국내 법제 등 분석하여, 차량(EDR·DSSAD·ADSDL) → 통신·클라우드 → 경 찰 시스템 → 분석·재현 단계로 이어지는 치안현장 중심 데이터 흐름 모델을 제안하였 다. 또한 최소수집, 목적제한, 보존기간 설정, 역할기반 접근통제(RBAC), 암호화 및 무 결성 검증 등을 통합한 보안·프라이버시 결합형 데이터 거버넌스 원칙을 제시하였다. 본 연구는 자율주행 시대에 적합한 치안 데이터 인프라 설계 방향을 제시하고, 공공 안전과 기본권 보호의 균형을 모색하는 정책적·제도적 함의를 제공한다는 점에서 의의 를 가진다.
This study examines data governance and cybersecurity issues surrounding Automated Driving System (ADS) data generated by Level 3 (Conditional Automation) and higher autonomous vehicles, and proposes an integrated operational model for policing applications. Autonomous vehicles represent a typical cyber-physical system that combines sensors, communication networks, and artificial intelligence, continuously generating high-volume, high-frequency, time-series data during vehicle operation. Such data holds significant potential as digital evidence in traffic accident investigations, criminal liability determinations, insurance dispute resolutions, crime investigations, and disaster response. However, legal and institutional standards governing data access, retention, and disclosure remain insufficiently established. In addition, autonomous vehicle data environments are exposed to various cybersecurity threats, including network hacking, GPS spoofing, and sensor manipulation, while also raising concerns regarding privacy infringement and the risk of surveillance expansion. This study analyzes international regulatory frameworks alongside domestic legal developments. Based on this analysis, it proposes a policing-centered data flow model structured as: Vehicle (EDR·DSSAD·ADSDL) → Communication & Cloud → Police Systems → Analysis & Reconstruction. Furthermore, the study presents an integrated governance framework combining security and privacy principles, including data minimization, purpose limitation, retention control, role-based access control (RBAC), encryption, and integrity verification. The findings contribute to the design of policing data infrastructure suitable for the autonomous vehicle era and offer policy implications for balancing public safety and fundamental rights protection.
0개의 논문이 장바구니에 담겼습니다.
선택하신 파일을 압축중입니다.
잠시만 기다려 주십시오.