년 - 년
국내 정보보호의 체계적인 교육을 위한 대학교육과정에 관한 연구 KCI 등재
한국융합보안학회 융합보안논문지 제16권 제4호 2016.06 pp.35-41
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
최근 국내 정보보호에 대한 인식은 사이버전과 해킹 사고들로 인해 매우 높아졌으나, 아직까지 정보보호 전문가가 매우 부족한 상황이다. 이러한 상황에서 국내 대학들의 관련학과 개설이 늘어나고, 교육기관들은 다양한 커리큘럼들을 개발하고 있다. 그러나 국내 정보보호 교육과정은 대학 또는 학과에 따라 서로 다르고, 실무적인 교육보다는 이론 교육에비중이 높은 경향이 나타나고 있다. 따라서 본 논문은 국내 정보보호 관련 대학들의 정보보호 관련 교육과정을 조사 및개선방향을 알아봄으로써, 향후 국내 정보보호 교육에 대한 체계적인 교육과정 개발에 활용될 것으로 기대한다.
Recently, the awareness of the domestic information security is very higher due to cyber war and hacking incidents. Yet, the information security professional is very scarce situation. In these circumstances are increasing of a opening the information security related departments of the domestic universities. And the Educational institutions are developed various curriculums. However, the domestic information security curriculum is different depending on the university or department. And there tends to be concentrated on the practical education rather than theoretical education. Therefore, in this paper will be analyzed to the Information security curriculum situation of the domestic Information Security related universities. This is expected to be utilized in a systematic curriculum development of the domestic information security education in a future.
Comparison of Security Education Program of Woman Information Security Majors of Seoul Region KCI 등재
한국융합학회 한국융합학회논문지 제11권 제10호 2020.10 pp.107-113
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
IT기술의 발전에 따라, 여성인력의 사회 참여 확대와 함께 정보보호 여성의 인력 양성은 매우 중요한 이슈가 되고 있다. 그러므로 여성 정보보호 인력 양성의 방향을 파악하기 위해 관련 교육과정을 분석하는 것이 중요하다. 따라 서 본 논문에서는 국내 수도권의 서울 지역에 소재하고 있는 여성 정보보호 인력 양성 학과의 교육훈련 프로그램을 분석하였다. 본 논문의 주된 연구 목표는 여성 정보보안 인력양성 학과가 구성하고 있는 교육훈련 체계가 NIST 인력양 성 방향과 부합하고 있는지 검토하는 것이다. 연구 초점은 여성 정보보안 학과가 보안 전공별로 어떤 특성을 가진 교육 과정을 편성하는지, 그리고 어떤 직무 교육에 관심을 가지는지에 초점을 맞추어 연구하였다. 또한 본 논문에서는 해당 전공의 교육과정이 NIST 인력양성 프레임워크를 기준하여, 관련 대학의 전공들이 해당 직무에 부합하는 교육훈련 체 계를 가지고 있음을 확인할 수 있었다. 결론적으로 말해, 관련 전공들은 융합산업 보안의 인증 평가 인력이나 정보보안 개발인력, 그리고 일반적인 사이버 보안 인력 양성에 초점을 맞추고 있는 것으로 판단된다.
With the development of IT technology, along with the expansion of women's participation in society, the education training of information security women's workforce is becoming a very important issue. Therefore, it is important to analyze the relevant curriculum to identify the direction of fostering women's information security workforce. Therefore, in this paper, the education and training programs of the department for training women's information security workforce based in Seoul area of the Korean metropolitan area were analyzed. The main research objective of this paper is to review whether the education and training system, which consists of the department of women's information security human resources development, is in line with the direction of NIST's human resources development. The research focus was on what the women's information security department organizes courses with each security major and what task training is interested in. In addition, in this paper, we were confirmed that the curriculum of the relevant major is based on the NIST Human Resources Development Framework, and that the majors of the relevant universities have an education and training system that conforms to the relevant task. In conclusion, the related majors are judged to be focused on the development of certification evaluation personnel of convergence industry security or information security development personnel, and general cyber security personnel.
Comparing the Effects of Two Methods of Education (Online versus Offline) and Gender on Information Security Behaviors KCI 등재 SCOPUS
한국경영정보학회 Asia Pacific Journal of Information Systems 제30권 제2호 2020.06 pp.308-327
※ 기관로그인 시 무료 이용이 가능합니다.
5,500원
The importance of information security is increasing, and various efforts are being made to improve users’ information security behaviors. Among these various efforts, information security education is mainly aimed at providing users with information security knowledge and improving information security awareness. This study classified the types of information security education into offline and online to examine the effects of each education method on attitudes toward information security (perceived severity, vulnerability, self-efficacy and response-efficacy) and information security behaviors. A survey was conducted for users with information security education experiences. The results obtained by comparing the differences in the path coefficients of personal information security behaviors according to information security education experiences showed that security behaviors were more significant in the online experience group than the offline group. In addition, gender differences were analyzed, and it was found that females had a greater impact on information security attitudes than males. This study also found that among Internet users with online information security education experience, females tend to have more information security behavior than males, but there were contrasting results among users with offline information security education experiences. The results of this study finally address the necessity of reflecting users’ personalities in the systematic design of information security education in the future. Furthermore, the results of this study support the need for an appropriate education system that sufficiently understands education types to maximize the effects of information security education.
교육기관 정보보호 담당자의 정보보호 교육수요와 정보보호 교육센터의 교육과정과의 차이 KCI 등재
한국경영정보학회 경영정보학연구 제16권 제3호 2014.12 pp.179-190
※ 기관로그인 시 무료 이용이 가능합니다.
4,300원
교육기관이 보유한 개인정보 파일의 상당수는 개인의 학사정보, 건강정보 등 민감한 정보를 포함한 다. 따라서 교육기관의 개인정보유출 사건이 발생할 경우 그 피해가 클 것으로 예상된다. 이러한 피해 를 막기 위해 교육부는 2012년부터 교육기관의 (개인)정보보호 담당자를 대상으로 보안인식제고 및 보안기술능력 향상을 목표로 하는 정보보호 교육센터를 설립하여 운영하는 등 다양한 노력을 하고 있지만 여전히 공공기관에서 발생한 개인정보유출 사건의 상당수는 교육기관에서 발생하고 있다. 본 연구는 정보보호 교육센터의 교육과정이 교육대상의 교육수요에 적합하게 운영되고 있는지 확인하 기 위해 다음과 같이 진행하였다. 대학의 정보보호 관련 전공 커리큘럼을 조사하여 정보보호 분야의 지식 및 기술 11개를 도출하였고, 정보보호 교육센터의 교육대상인 교육기관의 (개인)정보보호 담당자 를 대상으로 정보보호 분야의 지식 및 기술 11개에 대한 교육수요를 조사하였다. 또한, 정보보호 교육 센터의 교육과정을 조사하였으며, 이를 교육대상의 교육수요와 비교해보았다.
Because personal information files held by educational institutions include sensitive information such as personal school affairs information or health information, damages resulted from personal information leakage of educational institutions are expected to be serious. In order to respond to this problem, the Ministry of Education has expanded information security education targeting (personal) information security officers in educational institutions. However, a number of personal information leakage cases of public institutions occurred at educational institutions. Thus, this study, targeting information security education centers, through an empirical research, tries to confirm whether information security education supply is being properly provided for (personal) information security officers in educational institutions, and suggest the appropriate balance between education supply and education demand as the implication for the educational direction of information security education centers.
4,600원
As reliance on information and communication becomes widespread, a variety of information dysfunctions such as hacking, viruses, and the infringement of personal information are also occurring. Korean adolescents are especially exposed to an environment in which they are experiencing information dysfunction. In addition, youth cybercrimes are steadily occurring. To prevent cybercrime and the damage caused by information dysfunction, information security practices are essential. Accordingly, the purpose of this study is to discuss the factors affecting the information security practices of Korean youths, considering information security education, perceived severity, and perceived vulnerability as leading factors of the theory of planned behavior. A questionnaire survey was administered to 118 middle and high school students. Results of the hypothesis test show that information security education affects perceived behavior control, and perceived severity affects attitude. Subjective norms, information security attitudes, and perceived behavioral control were found to influence adolescents' practices of information security. However, perceived vulnerabilities did not affect youths' information security attitudes. This study confirms that information security education can help youths to practice information security. In other words, information security education is important, and it is a necessary element in the information curriculum of contemporary youth. However, perceived vulnerability to youth information security threats did not affect information security attitudes. Consequently, we suggest that it is necessary to strengthen the contents of the information security education for Korean youths.
정보보안 교육이 침해사고에 미치는 영향에 대한 실증분석
한국경영정보학회 한국경영정보학회 정기 학술대회 HUMANITY IN THE HUMANITY IN THE DIGITAL INTELLIGENT SOCIETY 2016.06 pp.342-348
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
오늘날 많은 기업들이 정보보안 사고로 인해 기업의 정보가 유출되면서 기업 이미지 훼손, 매출액 감소, 손해배상금 지불 등 직간접적인 피해를 경험하고 있다. 이에 따라 정보보안에 대한 중요성은 부각되고 있지만 정보보안 투자의 효과를 계량적으로 추정한 연구는 부족한 실정이다. 이로 인해 한정된 보안예산 으로 최적의 정보보안 정책을 수립하기 위한 의사결정에 어려움이 있다. 본 연구는 포아송 회귀 분석 방 법을 사용하여 기업의 정보보안 투자 중 정보보안 교육이 침해사고에 미치는 영향에 대하여 실증적인 연 구를 하고자 한다. 또한 교육 대상을 관리자와 일반직원으로 분류하여 살펴보고 정보보안 교육 서비스의 아웃소싱 여부에 따른 교육의 효과를 측정한다. 본 연구는 정보보안 교육의 효과를 계량적으로 측정하였 다는 점에서 학문적 공헌도를 가진다.
Recently, many firms have faced with direct and indirect incidents such as reputation decline, decreased sales, damage compensation and other damages caused by information security breaches. Although the importance of information security protection has been growing significantly, firms still have difficulties in decision making due to lack of measurable performance indicators of the investment effectiveness. This research empirically examines the impact of information security education on information security incidents using Poisson regression analysis. This study investigates the impact of information security education in educatee group perspective; manager group and employee group. This research contributes to business organizations by establishing a method to measure security investment which can support firm’s investment decision on security education. The research also contributes to academia by estimating the effectiveness about information security education quantitatively.
기술․가정교과 ‘정보 보호와 공유’ 단원에서 개인 정보 보호 교육을 위한 교수․학습과정안 개발 KCI 등재
한국실과교육연구학회 실과교육연구 제17권 제2호 2011.05 pp.125-148
※ 기관로그인 시 무료 이용이 가능합니다.
6,100원
이 연구의 목적은 2007 개정교육과정 기술·가정교과의 중학교 8학년 ‘정보 보호와 공유’단원에서 개인 정보 보호교육을 위한 교수·학습과정안을 개발하는데 있다. 이를 위해 먼저 개정교육과정에서의 ‘정보 보호와 공유’ 단원을 분석하고 정보 보호 관련 사이트의 내용 요소를 추출하였다. 이어서 교수·학습과정안 단원을 설계하는 데 필요한 구성 요소를 도출하고 최종적으로 교수·학습과정안을 개발하였다. 이 연구는 전문가 평가와 경기도 부천소재 ○○중학교 2학년 학생들을 대상으로 현장 적용을 거쳤으며, 주요 결과는 다음과 같다. 첫째, 개발된 교수·학습과정안은 개정교육과정에서의 정보 보호에 대한 내용을 충실히 반영하는 동시에 기술·가정교과의 기술과 교육 분야에서는 처음으로 개발된 것이다. 둘째, 개발된 교수·학습과정안은 청소년을 위한 정보 보호 수준에 맞추었기 때문에 중학생을 위한 교수·학습과정안으로 적절하다. 아울러 개발된 활동지와 제시된 동영상 자료는 중학교 학생들이 쉽게 이해할 수 있도록 구성되었다. 셋째, 개발된 교수·학습과정안을 실제로 적용한 결과, 학생들은 개인 정보에 대한 중요성과 개인 정보를 잘 관리해야 한다는 인식을 갖게 되었다. 넷째, 개발된 교수·학습과정안은 기술·가정교과에 새롭게 도입된 정보보호 교육을 학교 현장에서 시행하는 데 있어 구체적이고 실제적인 교수·학습 자료가 되므로 이를 이용하면 학생의 실제적인 흥미와 관심을 제고시킬 수 있다.
The purpose of this study is to develop a lesson plan for private information security in the 'information security and sharing' unit of the 2007 revised curriculum. In order to accomplish this purpose, the 'information security and sharing' unit of the revised curriculum was first analyzed and content elements of information security-related sites were extracted to derive design components of the lesson plan. The lesson plan was finished after passing through steps of development and verification. Effects of the completed lesson plan were investigated through professional verification and field studies. The developed lesson plan has the following characteristics: First, the developed lesson plan reflects contents on information security of the revised education course. Second, the developed lesson plan was created at the level of information security for adolescents, therefore, it is appropriate for middle school students. The activity form developed and video materials presented helped middle school students understand easily. Third, as the developed lesson plan was applied, students became to improve their understanding of the importance of private information and realized that private information should be managed well. Fourth, information security education which is essential in the information-oriented society could be done in the technical arts subject through the developed lesson plan. Students will be able to receive education on private information security, and could become interested in the technology subject as well. Thus, our lesson plan may satisfy both the interest and needs of students in the teaching-learning activity.
초등 정보보호 교육을 위한 KASP-통합수업 모형 KCI 등재
한국정보교육학회 정보교육학회논문지 제14권 제2호 2010.06 pp.157-164
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
이 연구에서 초등학생을 위한 정보보호 지식과 태도, 기능을 통한 실천능력의 신장을 고려한 정보보호 통합학습모형을 제안하였다. 이를 위해 첫째, 초등학교의 교육과정 중 정보보호 교육내용을 추출한 뒤 정보보호교육내용을 지식, 태도, 기능, 실천적 관점에서 분석했다. 둘째, 효과적인 정보보호교육을 위해 지식, 태도, 기능, 실천이 종합된 KASP-정보보호 통합학습모형을 개발하고 그에 따른 지도안과 학습전략을 개발하였다. 셋째, 개발된 모형을 실험집단에 적용하고 비교집단에는 일반적 정보보호교육 내용을 적용하여 비교집단과의 전후좌우비교를 실시하여 효과성을 검증하였다. 검사결과 이 연구에서 개발된 KASP-정보보호 통합학습모형이 학생들의 정보보호 지식 및 태도, 기능뿐만 아니라 실천능력에도 효과적임을 보였다.
This study proposed the information security integrated learning model-based KASP. By analyzing the teaching materials regarding information security in the regular curriculum, and by investigating preliminary studies, the information security contents were examined in terms of knowledge, attitudes, skills and ways to practice(KASP). And, the KASP-information security learning model integrating knowledge, attitudes, and ways to practice was developed, and the teaching plan and learning material hand-out were accordingly made out. Moreover, the developed model was tested in an experimental group, and common information security learning content centered on ethics in the comparison group in order to compare the results of two groups. As the test result analysis, it was verified that the developed KASP-information security integrated learning model was effective to help the students learn the knowledge, attitudes, skills and ways to practice.
모의해킹 놀이 활동을 통한 초등 정보보호교육 STEAM 프로그램 개발 및 적용 KCI 등재
한국정보교육학회 정보교육학회논문지 제20권 제3호 2016.06 pp.273-282
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
본 논문에서 제안하는 신규 STEAM(Science, Technology, Engineering, Art, Mathematics) 프로그램 및 정보보안 모의해킹 놀이식 학습교구는 미래 유망 직업군인 정보보안전문가와 관련된 프로젝트를 수행해 정보보안전문가에 대한 학생들의 관심과 흥미를 높이고 창의적 진로설계를 할 수 있도록 도움을 주는 것을 목적으로 한다. 또한 프로그램을 활용하는 교사와 학생이 정보보안전문가 관련 프로젝트 지도 및 수행과정을 통해 정보보안전문가가 하는 일과 필요한 역량이 무엇인가를 자연스럽게 이해하도록 프로그램을 설계하였다. 본 논문에서 제안한 정보보안전문가 STEAM 학습 교구는 정보보안전문가의 기본 소양을 제안된 학습 교구를 응용하여 간접적으로 체험해보는 활동으로 설계하였다. 사이버 보안에 관련된 내용이 어렵고 낯설기 때문에 기술적인 부분보다는 해당 직업의 핵심 원리에 접근할 수 있도록 내용을 구성하였다. 이 프로그램을 통해 학생들은 문제를 해결하는 과정에서 서로 소통하고 정보보안전문가에 관심을 가지고 창의적으로 진로를 설계할 수 있을 것이다.
The new STEAM program suggested in this paper aims at helping students to have interest in information security engineering experts and to design their career creatively through the project on future promising career. The program was designed to help teachers and students understand the jobs and capabilities required for information security experts through direction and execution of the information security expert project. Teaching tools of information security through simulation hacking play activities based on hexagon cell is designed to provide students with the chance to indirectly experience the job of a computer security expert through an unplugged education. Because the content of cyber security is unfamiliar and difficult to understand, the program is designed to allow students to access the key principle of the job, rather than to describe the technical part. Using this program, students will be able to communicate with each other to solve the problems, to have interest in computer security experts, and to design their careers in a creative manner.
Media2.0 Tool을 사용한 효과적인 교수학습방법 연구
고려대학교 정보창의교육연구소 정보창의교육논문지 제4권 제2호 2010.12 pp.9-14
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
정보통신기술의 발달은 학교 환경을 변화시키고 있다. 학교에서 ICT 인프라 수준은 최근에 이르러 크게 발전하였으나, ICT를 교수학습에 활용하고 이를 적극적으로 이용하는 양적, 질적인 발전은 아직 낮은 수준에 머무르고 있다. 학습자들이 ICT를 활용하여 수준높은 학습의 기회를 얻고, 교사가 적극적으로 활용할 수 있도록 하기 위하여 미디어2.0 도구를 분석하고, 교수학습에 적용함에 있어 어떤 특징을 가지는지 살펴보았다. 이를 통하여 미디어2.0을 응용한 다양한 활동을 통해 ICT를 활용한 교수학습의 수준을 높힐 수 있는 가능성을 탐색한다.
The improvement of the information technology affects educational environment. The quality of educational ICT infrastructure improved very much lately, but the use of ICT and advance of quality and quantity in teaching and learning is still in low level. The purpose of this study are for better educational opportunities with ICT and accessibility for teachers by analysis of 미디어2.0 도구 and features in application. By this study, we will investigate the possibility of better educational environment with ICT through many activities of media 2.0.
정보보호영재교육원 운영현황 분석 및 개선방안 KCI 등재
한국디지털정책학회 디지털융복합연구 제14권 제12호 2016.12 pp.441-449
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
오늘날 행정, 금융 등의 일상 업무가 정보시스템 기반으로 운영되고, 국가‧공공‧민간기관 등을 대상으로 다양 한 사이버 침해가 발생됨에 따라 기술적인 보안 대책뿐만 아니라 정보보호 전문 인력에 대한 사회적 수요가 증가하 고 있다. 이에 교육부에서는 정보보호 우수 인재를 조기에 발굴하여 정보보호 전문성과 윤리의식을 겸비한 전문 인 력을 양성하고자 2014년에 전국 4개 대학에 정보보호영재교육원을 설치하였다. 그러나 이미 오랫동안 운영되어 많은 연구가 이루어진 수학영재나 과학영재교육원에 비해 초기 운영단계인 정보보호영재교육원은 아직까지 체계적인 분석 이나 연구가 미비한 실정이다. 본 논문에서는 전국 4권역 정보보호영재교육원의 현황을 운영, 선발, 교육 3분야로 나 눠 분석하여 현재 운영체계의 부족한 부분을 도출하고 이를 토대로 향후 정보보호영재교육원이 효과적인 운영 및 인 력양성을 위한 실질적인 프로그램을 구축할 수 있도록 개선방안을 제안한다.
Today, as a daily routine such as administration/finance is operated under information system and various cyber crime against national, public, and private institutions happen, demand for information security manpower is increasing. Hence, Ministry of Education has formed an Institute of Information Security Education for the Gifted to early discover talent in the field of information security and train professional personnel with specialty and ethics in 4 universities of country in 2014. But the nascent Institute of Information Security Education for the Gifted lack systematic analyses compared to Institute of Mathematics and Science Education for the Gifted that has existed from a long time ago. In this paper, we analyze the state of the Institute of Information Security Education for the Gifted in three parts: operation, selection, education and suggest an improvement to build a practical program for effective operations and education.
국내외 정보보안 교육과정 분석을 통한 전공학습 개선방안에 관한 연구 KCI 등재
한국융합보안학회 융합보안논문지 제24권 제4호 2024.10 pp.147-153
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
4차 산업혁명(4IR; Fourth Industrial Revolution) 시대 기존의 정보통신기술을 바탕으로 Cloud Computing, Bic Data, Smart Platform 등 급변하는 지식정보사회에서 보안 위협의 형태도 사회공학적 기법 등을 활용한 지능적 형태로 발전하 고 있다. 보안 위협은 정보에 대한 침해, 정보 시스템의 지속적 장애 등으로 개인, 기업, 사회 더 나아가 국가로 확장되는 심각한 문제로 대두되면서 이를 대응하기 위한 근본적 대책 마련이 시급한 실정이다. 이러한 보안 위협을 대응하기 위한 기술적 접근으로 정보보안 시스템의 구축, 보안 관제, 침해사고 분석 등이 있고, 사회적 접근으로 정보보호를 위한 전문 인력양성을 통한 글로벌 경쟁력을 확보할 필요가 있다. 따라서 본 연구에서는 4차 산업혁명시대 정보보안의 중요성에 대 한 대학의 보안 전문 인력양성을 위한 이론 및 실무적 전공학습 교육과정 개선방안에 대하여 제안한다.
In the era of the Fourth Industrial Revolution (4IR), in the rapidly changing knowledge information society with cloud c omputing, big data, and smart platforms based on existing information and communication technology, security threats are also developing in an intelligent form using social engineering technology. Security threats, such as information infringeme nt and continuous failure of information systems, have emerged as serious problems that affect individuals, companies, soc iety, and even nations, and fundamental countermeasures to deal with them are urgently needed. Technical approaches to deal with such security threats include the construction of information security systems, security control, and infringement incident analysis, and it is necessary to secure global competitiveness through the training of professional human resource s for information protection through a social approach. Therefore, this study proposes theoretical and practical major learni ng curriculum for training security professionals at universities in response to the importance of information security in th e era of the Fourth Industrial Revolution.
정보교육 및 실무활용을 위한 정보보호 관련 지식 및 기술에 대한 분류체계 연구 KCI 등재
한국상업경영학회(구 한국상업교육학회) 상업경영연구(구 상업교육연구) 제23권 제3호 2009.08 pp.123-140
※ 기관로그인 시 무료 이용이 가능합니다.
5,200원
조직내 가장 중요한 자산을 효율적으로 보호하기 위한 대책수립은 대단히 중요하다. 그 중에서도 정보보호의 중요성이 강조되면서 정보보호 관련 지식 및 기술에 대한 연구가 활발히 진행되고 있다. 정보보호의 개념은 정보화가 진전됨에 따라 많은 변화를 거치고 있다. 그러나 이제는 단순히 정보통신 등의 기술 및 서비스 차원을 뛰어 넘어 기업의 경쟁우위와 연결시키는 노력이 필요하다. 이는 기술적인 측면도 중요하지만, 기업관리적 측면과 기업환경적 측면에 대한 고려가 함께 병행되는 것이 필요하다는 것을 의미한다. 그 동안 정보보호 분야의 연구는 주로 정보통신 분야의 교육과정에 필요한 지식 및 기술 등을 식별하는 연구에 초점을 두었으며, 정보시스템 분야의 연구는 주로 산업계에 필요한 지식 및 기술 등을 식별하는 연구에 초점을 두었다. 그러나 정보보호는 컴퓨터공학, 통신공학, 수학, 전자상거래, 경영학, 법학 등 학제적 성격을 가지고 있어, 다양한 분야에서 연구된 결과들에 대한 포괄적 분석이 필요하다. 본 연구에서는 학계와 산업계 등을 대상으로 하여 연구된 정보보호 관련 지식 및 기술의 기존 분류체계에 대한 연구를 종합적으로 고찰한 후 일반인들이나 경영관리자들, 그리고 일반 정보교육자들 및 실무기술자들(예를 들어 정보보호전문가들)이 쉽게 이해할 수 있으며 정보교육 및 실무활용시 필요한 정보보호 관련 신분류체계를 대분류→중분류→소분류 체계형태로 제시하고자 한다. 신분류체계에 의하면, 정보보호를 사회적 보호(환경적 차원), 조직적 보호(관리적 차원), 기술적 보호(논리적/물리적 차원)로 분류하고 있는데, 이렇게 사회적/조직적 보호와 기술적 보호를 구분하여 놓음으로써 일반인들이나 경영관리자들, 그리고 일반 정보교육자들 및 정보보호전문가들이 이해하기 쉬운 분류체계의 형태를 띄게 된다. 본 연구에서 제시한 정보보호 관련 신분류체계는 정보보호 항목에 관한한 포괄적 분류체계라고 할 수 있다. 그러나 본 분류체계는 기존의 분류체계를 중심으로 재구성한 것이므로, 본 연구결과는 한계점과 제약사항을 가지게 된다. 이로 인해 신분류체계 및 관련 항목들은 신중하게 해석되고 적용되어야 한다.
Due to growing threats of IS, many organizations have began to recognize the importance of information security. Policy making of information security to protect efficiently most important assets from outside invasion is very important. The concept of information security has been changed considerably by information-oriented progress. But, it is time to strive with competitive advantage of firm besides technology(e.g. information communication) and service area. It means that the organizational and environmental dimensions as well as technological dimension of information security are also important. Therefore, the purpose of the study is to identify the items of knowledge/skill about information security and to reconstruct the new taxonomy of information security considering the above three dimensions. The information security was focused mainly on the identification study about knowledge/skill for curriculum of information communication area, and the information system was focused mainly on the identification study about knowledge/skill for practical business. Because of interdisciplinary characteristics of information security including computer science/communication engineering/mathematics/electronic commerce/business management/law/the others, information security needs comprehensive analysis about the studies of the diverse area. First of all, the study investigate comprehensively the prior taxonomy about knowledge/skill for information security of the diverse area(e.g. academic and practical area), and represent the new taxonomy(large → medium → small taxonomy) to understand easily for general public, business manager, general educator related- information education, and practical engineer(e.g. information security specialist). The study aims to determine the items of required knowledge/skill for three information security dimension: social security(environmental dimension), organizational security(managerial dimension), technological security(logical/physical dimension). Because technological security was separated from social security/organizational security, the new taxonomy would be understood easily by general public, business manager, general educator related-information education, and information security specialist. The new taxonomy seems to be comprehensive taxonomy on account of including almost all of the items about information security. But, the new taxonomy was made by reconstructing the past taxonomy, the new taxonomy would have the limit and weak point. Therefore, the new taxonomy and related-items would be interpreted and applied prudentially.
정보보호 교육과정 표준화모델 개발 연구 : 국내 대학 사례를 중심으로 KCI 등재
한국융합보안학회 융합보안논문지 제18권 제5호 2018.12 pp.99-104
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
현대사회가 정보화 시대를 넘어서 4차 산업혁명시대로 접어들었다. 즉, 세계적으로 생명과학이 주도하는 시 대가 도래 하였다. 바야흐로 무인자동차, 드론, 알파고와 같은 인공지능, IT기술로 탄생한 인간을 대신하는 로봇 시대가 도래하였다. 이는 IT의 근간인 정보전달의 핵심가치를 기반에 두고 있는 것이다. 이러한 4차 산업 혁명 시대에 즈음하여 정보보호분야가 필수불가결한 학문분야가 되었다. 웹기반 보안, 시스템기반 보안, 클라이언트 기반 보안, 모바일보안, 그리고 무선보안 등 컴퓨터 기반 IT기술 전반에 보안문제는 필수사항이 되었 다. 이에 발맞추어 보안인력양성을 위한 대학의 교육과정을 시대에 요구에 맞도록 표준화할 필요가 있다고 보여 진다. 본 논문은 정보보호분야의 교육과정을 표준화하기 위한 모델을 개발하여 제시하고자 한다. 이러한 모델을 통하 여 각 교육기관에서는 필요한 트랙이나 분야를 선택하여 학생들을 지도하여 효과적인 정보보호인력양성에 기여 하고자 한다.
Modern society has entered the era of the fourth industrial revolution beyond the information age. In other word s, technology innovations such as life science, unmanned automobiles, drone, artificial intelligence, big data, robot tec hnology, Internet of things, and nano-technology are leading the change of the world. In these technologies use and delivery of information is playing a key role, and the field of information security for the safe use of information ha s become an indispensable discipline. In this sense, it is necessary to standardize the curriculum of universities to fo ster security manpower to meet the needs of the era. In this paper, we develop and present a model to standardize the curriculum in the field of information security. Using this model, each educational institution will be able to select the necessary track or field to guide the student s and cultivate information security manpower effectively.
한국AI디지털융합학회(구 한국디지털융합학회) 디지털융합논문지 제5권 제1호 2018.09 pp.1-31
※ 기관로그인 시 무료 이용이 가능합니다.
7,200원
It has already been four years since the first implementation of information protection gifted education, but there has never been an in-depth discussion of performance evaluation including curriculum. In order to ensure the successful establishment and development of gifted education for information protection, it is also important to develop, organize, and manage the process of gifted education for information protection as well as to evaluate its performance. In this paper, we have developed a method to evaluate the performance of gifted education institutions by analyzing previous research. In order to evaluate the performance of gifted and talented information security gifted education, we collected opinions of related experts based on the evaluation model of gifted education institute developed by the Korea Educational Development Institute and selected evaluation items suitable for the evaluation of information protection gifted education center. Delphi technique was applied to the experts, and the validity of the 75 items (43 required, 11 recommended, 21 selected) was evaluated as essential, recommended, and selected. And that all 75 items of the giftedness should be adopted as evaluation items of gifted education institutions. In addition, AHP analysis results showed weights and priorities for a total of 29 evaluation areas. It is expected that the results of this study can be used as a criterion for evaluating the performance of the gifted education institute.
디지털리터러시 교육이 개인 정보 보안 인식에 미치는 영향 연구 KCI 등재
한국융합보안학회 융합보안논문지 제20권 제4호 2020.10 pp.161-167
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
사이버공간 속 디지털문화의 융복합 윤리교육은 개인정보, 저작권 등 특정 영역에만 국한되고 있어 사이버 공간의 사용자인 디지털 네이티브들이 소통하고 공유하고 교류하는 사이버공간 속 정보수용능력과 정보 제공능력에 관한 교육 은 미비한 상태이다. 이로 인해 정보보안의 중요성을 인지하지 못하고 타인의 개인정보를 남용하는 역기능이 최근 사회 문제로 대두 되고 있다. 본 연구에서는 사이버공간에서 가장 많이 정보를 소통하고 교류하는 디지털네티즌들 가운데 대 학교 1~2학년 학생들을 대상으로 디지털 리터러시 교육을 실시한 후 이들이 정보보안 인식의 변화를 조사하였다. 이를 바탕으로 디지털 문화사회회에 필요한 디지털 리터러시 교육의 체계적 양성의 근원적인 대책의 마련하고자 한다.
Convergence ethics education for digital culture in cyberspace is limited to specific areas such as personal information and copyright. Education on the ability to accept information and provide information in cyberspace in which digital natives communicate, share and exchange is inadequate. As a result, the dysfunction of abusing the personal information of others without recognizing the importance of information security has recently emerged as a social problem. In this study, among digital netizen who communicate and exchange information the most in cyberspace, digital literacy education was conducted for students in the first and second grades of university, and then they investigated the change in information security perception. Based on this, we intend to prepare fundamental measures for systematic cultivation of digital literacy education necessary for the Digital Cultural Society.
국내대학 정보보호전공 교육과정 분석 및 융합교육정책 KCI 등재
한국디지털정책학회 디지털융복합연구 제12권 제1호 2014.01 pp.599-605
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
본 논문에서는 국내대학의 정보보호 전공 교육과정을 분석하였고, 교육내용을 중심으로 대학별 교육 차별화 방향을 살펴보았다. 또한 국내 정보보호 산업체를 중심으로 정보보호 분야별 인력채용 수요현황과 대학별 양성인력을 비교 분석하여 정보보호 인력의 충족정도를 분석하였다. 아울러 정보보호 전공 교육과정 측면에서 향후 융합 분야의 정보보호 인력 요구와 방향성을 검토하였다.
In this paper, we analyzed academic curriculum of information security major in domestic university and in center of education contents, reviewed about eduction distinction direction in each university. Also in center of domestic information security industry, it compared and analyzed status of recruitment demand in each information security range and training student in the university, and analyzed whether to meet the degree of information security workforce. In addition, we were examined future needs and direction of the convergency field of information security personnel in terms of information security major curriculum.
정보보호 전문인력 양성을 위한 필수요구지식 및 교육인증 프로그램 KCI 등재
한국디지털정책학회 디지털융복합연구 제9권 제5호 2011.10 pp.113-121
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
정보보호에 대한 중요성이 점차 증대됨에 따라 관련 업무를 수행할 수 있는 전문인력에 대한 수요 역시 증가하고 있다. 하지만, 양질의 전문인력을 양성하는데 있어 현실적인 문제점이 존재하며 이에 대한 장·단기적 해결방안이 요구된다. 본 논문에서는 정보보호 전문인력 양성을 위한 정보보호 필수요구지식을 직무에 따라 제시하고, 융합전공 기반의 교육인증 프로그램 및 향후연구를 제안하였다. 이를 위하여 미국의 정보보호 교육인증 프로그램을 분석하는 한편, 국내 현실을 반영한 정보보호 교육인증 프로그램의 성공요인을 제시하였다.
As the importance of information security grows, the demand of professionals in information security field is continuing to increase. In developing as information security professionals, however, there are practical problems to be solved in advance. This study defines the body of essential knowledge(EBK) for information security professional development; on the other hand, this study suggests a education program as a multidisciplinary major based on the EBK.
초등 정보보안 교육의 글로컬 접근 GLOCAL SECURE-ART PLAY 예술융합 모델 KCI 등재
국제문화기술진흥원 The Journal of the Convergence on Culture Technology (JCCT) Vol.11 No.5 2025.09 pp.109-118
※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.
디지털 환경에서의 아동의 미디어 노출이 증가함에 따라, 정보보안에 대한 조기 인식 교육의 중요성이 대두되 고 있다. 본 논문은 정보보안 교육의 기술 중심적 한계를 극복하고, 초등학생의 인지·정서적 특성에 적합한 감성 기 반 융합 교육 모델을 개발하고자 하는 데 목적이 있다. 이를 위해 예술과 놀이, 그리고 생성형 인공지능 기반 음악 (AI-generated music)을 통합한 참여형 정보보안 교육 모델인 ‘GLOCAL SECURE-ART PLAY’를 제안한다. 이 모델은 총 16차시로 차시당 약 40분으로 구성된다. 시청각적 자극과 창의적 표현 활동을 통해 초등학생이 정보보안 개념을 직관적으로 이해하고 내면화할 수 있도록 설계되었으며, 세계적 보안 이슈를 지역 문화와 연계하여 재구성할 수 있는 글로컬(glocal) 교육 철학에 기반을 두고 있다. 본 논문에서는 해당 모델의 이론적 배경과 교육적 가능성을 고찰하고, 정보보안 교육의 새로운 패러다임으로서 예술융합 교육이 가지는 의미와 확장 가능성을 탐색하고 정보보호 에 대한 조기 인식 확산, 문화적 감수성 함양, 비전공자 대상 정보보호 교육의 대중화라는 측면에서 교육적·학문적 기여를 기대할 수 있다.
As children's exposure to digital media increases, the importance of early awareness education about information security is growing. This paper aims to overcome the technology-centric limitations of information security education and develop an emotionally-focused, integrated education model tailored to the cognitive and emotional characteristics of elementary school students. To this end, we propose "GLOCAL SECURE-ART PLAY," a participatory information security education model that integrates art, play, and AI-generated music. This model consists of 16 lessons, each approximately 40 minutes long. Designed to help elementary school students intuitively understand and internalize information security concepts through audiovisual stimulation and creative expression activities, it is grounded in a glocal educational philosophy that reframes global security issues within local cultures. This paper examines the theoretical background and educational potential of the model, and explores the significance and expandability of arts-integrated education as a new paradigm for information security education. It is expected to contribute to educational and academic research by promoting early awareness of information security, fostering cultural sensitivity, and popularizing information security education for non-specialists.
0개의 논문이 장바구니에 담겼습니다.
선택하신 파일을 압축중입니다.
잠시만 기다려 주십시오.