년 - 년
사용자 접속패턴을 이용한 보안관제 효율화 방안 연구 - 자체 보안관제를 중심으로
한국정보통신설비학회 한국정보통신설비학회 학술대회 2018년도 정보통신설비 학술대회 2018.08 pp.10-12
※ 기관로그인 시 무료 이용이 가능합니다.
3,000원
대학 전산망에서의 외부 침입에 적합한 대응을 위한 보안관제 기술 연구
한국산업안보학회(구 한국산업보안연구학회) 한국산업보안연구 제4권 제1호 통권 제5호 2014.06 pp.23-39
※ 기관로그인 시 무료 이용이 가능합니다.
5,100원
정보의 양이 급격히 증가함에 따라 정보에 대한 관리 및 보안 취약점들이 다 양하게 존재하게 되었다. 뿐만 아니라 대학의 경우 다수의 IT자원에 대비하여 관 리 인력이 부족함에 따라서 외부의 위협에 대처할 수 있는 방안이 부족한 실정 이다. 따라서 본 연구에서는 보안 에이전트 도입을 통해서 소수의 보안 담당자 만으로도 효과적으로 보안 관제를 수행할 수 있는 환경을 마련한다. 또, 좀비 PC의 발생에 대처하기 위한 좀비PC탐지 기법과 외부 침입 탐지 및 방지 기술을 조합하여 대학 환경에 적합한 보안관제 방안을 제시한다. 주제어: 보안관제,
With the rapid increase of information, the security vulnerability are emerging issue in information management. In addition, coverage of security monitoring services in university is so large, but they have the problem of the lack of administrative staff. This paper suggests the appropriate solutions against external cyber-attacks. They are anti-virus solutions, detections of zombie PC and the intruder detections and preventions.
보안관제 위협 이벤트 탐지규칙 표준 명명법 연구 KCI 등재
한국융합보안학회 융합보안논문지 제15권 제4호 2015.06 pp.89-96
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
최근 해킹과 악성코드 등 사이버 공격기법은 매우 빠르게 변화 발전하고 있으며 그에 따른 사이버공격 기법이 다양해지고 지능화된 악성코드의 수가 증가하고 있다. 악성 코드의 경우 악성 코드의 수가 급격하게 증가함으로 서 분류나 이름의 모호함으로 인해 악성코드에 대처함에 있어 어려움이 있다. 본 논문은 이러한 문제점을 해결 하기 위해서 국내에 있는 백신업체들의 명명규칙을 조사․분석하고 이를 기반으로 현재까지 나온 탐지규칙의 패 턴을 비교 분석해 보안관제 이벤트 탐지규칙에 적합한 명명규칙을 제안 한다.
Recent, Cyber attacks such as hacking and malicious code techniques are evolving very rapidly changing cyber a ttacks are increasing, the number of malicious code techniques vary accordingly become intelligent. In the case of m alware because of the ambiguity in the number of malware have increased rapidly by name or classified as maliciou s code may have difficulty coping with. This paper investigated the naming convention of the vaccine manufacturer s in Korea to solve this problem, the analysis and offers a naming convention for security control event detection r ule analysis to compare the pattern of the detection rule out based on this current.
중견 방산업체 보안관제 개선을 위한 위협 정보 공유 및 IP 차단 정책 적용 효과 분석 KCI 등재
한국융합보안학회 융합보안논문지 제25권 제2호 2025.06 pp.31-41
※ 기관로그인 시 무료 이용이 가능합니다.
4,200원
본 연구는 중견 방산업체의 보안관제 효율성을 향상시키기 위한 방안으로, 정부 기관의 사이버 위협 정보 공유체계를 기반 으로 한 IP 차단 정책 적용 효과를 실증적으로 분석하였다. 고도화되는 사이버 공격 환경 속에서 중소·중견 방산업체는 전문 인력 부족과 외주 관제 의존으로 인해 신속하고 능동적인 대응에 한계를 겪고 있다. 이에 본 연구는 위협 정보 공유의 정책적 활용 가능성과 보안관제 기능의 내재화를 위한 단계적 전략을 제시하고, 사례기업에 위협 IP 차단 정책을 적용하여 이메일 기 반 외부 위협의 변화를 정량적으로 분석하였다. 분석 결과, 정책 적용 후 스팸메일 수신량이 유의미하게 감소하였으며, 이는 정부 제공 정보를 기반으로 한 능동적 보안 정책 수립이 보안관제 효율성 향상에 실질적으로 기여할 수 있음을 입증하는 결 과이다. 본 연구는 위협 정보 공유와 차단 정책의 결합이 보안 예산과 인력이 제한된 중견 방산업체에도 적용 가능한 실용적 모델임을 제시하며, 향후 민·관 협력 기반의 보안 인프라 강화 및 관제 내재화 전략의 중요성을 뒷받침한다.
This study empirically analyzes the effectiveness of implementing an IP blocking policy based on government-provided cyber threat intelligence to improve security monitoring operations in mid-sized defense companies. Amid increasingly sophisticated cyber threats, these companies often lack the in-house expertise and resources needed for timely and proactive responses, relying heavily on outsourced monitoring services. To address this, the study proposes a phased strategy for internalizing monitoring capabilities and leveraging threat information through public-private collaboration. A case company applied an IP blocking policy, and the volume of spam emails—a proxy indicator of external threats—was quantitatively analyzed before and after the policy’s implementation. The results revealed a statistically significant reduction in spam, demonstrating that government-supplied intelligence can form the basis of effective, proactive security policies. These findings offer a practical model for resource-constrained defense firms and underscore the importance of coordinated threat intelligence sharing and infrastructure support
근무시간 단축에 따른 효율적인 보안관제를 위한 근무체계 개선방안 KCI 등재
한국융합보안학회 융합보안논문지 제19권 제4호 2019.10 pp.143-150
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
최근 ICT기술이 발전함에 따라 사이버공격 또한 지능화, 고도화 되고 있다. 이러한 사이버공격에 대응하기 위해서는 24시간 365일 보안관제체계를 유지해야 하며, 이를 위해 보안관제는 필수적인 교대근무를 해야 한다. 보안관제요원은 24시간동안 교 대근무를 통해 사이버공격에 맞서 실시간으로 대응할 수 있어야 하나 2018년 근로기준법 개정에 따라 인력과 보안관제 근무 체계에 영향을 주게 되었다. 따라서 본 논문에서는 주 52시간 근무시간 단축에 따른 효율적인 보안관제 근무체계를 제안한다.
Recently, As ICT technology develops, cyber attacks are becoming more intelligent and advanced. In order to cope with such cyber attacks, the security control system must be maintained 24 hours a day, 365 days a year. Security personnel should be able to respond in real time to cyber attacks through shift work for 24 hours, but the workforce law was revised in 2018 to affect manpower and security control work systems. Therefore, in this paper, we propose an effective security control work system by reducing 52 working hours per week.
보안서비스 대가 현실화 및 정보보호 생태계 조성을 위한 법·제도 개선방안 연구 KCI 등재
한국보안관리학회(구 한국경호경비학회) 시큐리티 연구 제81호 2024.12 pp.23-41
※ 기관로그인 시 무료 이용이 가능합니다.
5,400원
인공지능, 클라우드 등 IT기술의 발전으로 디지털 대전환 시대가 확산되면서 랜섬웨어 나 생성형 AI를 이용한 자동화된 사이버공격도 증가하고 있다. 더 나아가 사이버공격기술 공유 플랫폼의 확대로 비전문가에 의한 사이버공격도 쉽게 가능해짐에 따라 신속하게 위 협요인을 파악하고 대응하여야 하는 정보보호 전문기업들의 역할은 나날이 중요해지고 있 다. 그럼에도 불구하고 정보보호 서비스를 제공하는 기업들은 대체로 적정대가를 받지 못 하고 있는 현실에 직면해 있다. 보안서비스 대가 현실화에 관한 산업현장의 요구는 이미 오래전부터 제시되었음에도 불구하고 여전히 해결되지 못하는 것은 개별 기업의 서비스 품질의 문제라기보다 근본적 인 원인이 개선될 수 있도록 접근하는 것이 필요하다. 이에 본 연구에서는 보안서비스의 주요 수요처인 국가나 공공기관의 예산이 산정되는 구조에 주목하였으며, 예산산정기준이 현실을 반영할 수 있게 마련될 수 있도록 적정단가 산정을 위한 전문가로 구성된 예산심의 위원회를 운영하고 가격평가가 아닌 기술평가로 선정될 수 있도록 평가체계를 개선하고, 보안서비스에 책정된 예산은 낙찰차액이라 하더라도 보안사업에 재투자 될 수 있는 체계 를 확보할 것을 제안하였다. 추가적으로 국가사이버위기관리경보 발령에 따른 추가과업이 장기화될 경우를 위한 예비비 산정, 계약상의 불합리한 조건 개선 등을 제안하였다. 정보보호 서비스 기업이 적절한 대가를 받지 못하는 문제는 결국 서비스 품질 저하로 이어져 국가 전반의 보안성을 약화시킨다. 정보보호산업은 ‘안전, 안보’와 연결되는 문제라 는 점에서 적정수준의 대가 지급은 시장자율에만 맡기기보다 국가의 지속적인 관심과 지원이 필수적이다. 민감하고 대량의 정보를 보유하고 있는 국·공공기관부터 대가 현실화를 시작하여야 하며, 이를 통해 정보보호산업 생태계의 개선과 기업 경쟁력 강화를 도모할 수 있기를 기대한다.
With the advent of the digital transformation era, propelled by advancements in IT technologies such as artificial intelligence (AI) and cloud computing, the frequency and sophistication of automated cyberattacks, including ransomware and generative AI-driven exploits, have significantly increased. Furthermore, the proliferation of cyberattack technology-sharing platforms has enabled even non-experts to carry out such attacks with relative ease. Consequently, the role of information security firms, which are responsible for the swift identification and mitigation of these threats, has become increasingly pivotal. Despite their critical importance, however, companies providing information security services often face systemic challenges in securing fair and adequate compensation for their work. Although calls from industry stakeholders for the equitable pricing of security services have been made for years, the issue remains unresolved. This ongoing challenge stems less from the service quality of individual firms and more from structural inadequacies requiring comprehensive reform. This study examines the budget-setting mechanisms employed by key consumers of security services, such as national and public institutions. It recommends the establishment of budget review committees, comprising domain experts, to determine fair pricing structures that reflect industry realities. Furthermore, it advocates for the refinement of evaluation frameworks to prioritize technical assessments over cost considerations during the selection of service providers. The study also proposes that any residual funds from procurement processes be reinvested into security-related initiatives to bolster the industry’s sustainability. Additional recommendations include the establishment of contingency budgets to address extended operational requirements arising from national cyber crisis management alerts and the rectification of inequitable contractual terms. The systemic undervaluation of information security services not only undermines the quality of these services but also compromises the broader security infrastructure of the nation. Given the critical intersection of the information security industry with national safety and security imperatives, achieving fair compensation for such services necessitates sustained governmental oversight and support, rather than reliance on market forces alone. Reform initiatives should commence with national and public institutions, which manage vast and sensitive datasets. By ensuring the realization of fair compensation within these sectors, it is anticipated that the information security ecosystem will be strengthened, fostering industrial competitiveness and enhancing national cybersecurity resilience.
악성도메인 IP 주소 추적을 통한 효과적인 보안관제 방안 연구 KCI 등재후보
한국융합보안학회 융합보안논문지 제9권 제1호 2009.03 pp.135-142
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
최근 국가안보 및 산업기밀 등 중요 정보를 절취하려는 사이버 공격이 급격히 증가하고 있다. 특 히 공격자는 보안시스템을 우회하기 위해 사용자들 방문이 많은 언론, 포털, 게임사이트 등에 해킹 경유지가 포함된 악성코드를 은닉․유포하거나 악성 파일이 첨부된 해킹메일을 발송하고 있다. 따 라서 기존에 구축된 통합보안관제시스템과 병행하여 사이버공격 유형별 악성도메인을 분류하고 도메인에 할당된 IP 주소를 실시간 추적하여 사이버위협 징후를 조기에 탐지·방어하는 효과적인 보안관제 방안을 제안한다.
Rcently, cyber attacks are rapidly increased for stealing critical information such as national security and industrial confidentials etc. Especially, attackers hide malicious code in the press, the portal, the game homepages which have many visitors or send forged hacking e-mails which contain malicious files for detouring security systems. So, in this paper, I propose the effective monitoring & controlling method for detecting cyber-threat symptoms early through using pre-implemented unified monitoring and controlling systems and classifing malicious domains related to cyber attacks and tracing IP addresses which assigned malicious-domain in realtime.
한국기계항공기술학회(구 한국기계기술학회) 한국기계항공기술학회지(구 한국기계기술학회지) 제27권 제5호 2025.10 pp.1013-1019
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
This paper examines security vulnerabilities in current authentication methods for remote patient monitoring in Wireless Medical Sensor Networks (WMSNs), including offline password guessing and man-in-the-middle attacks. We propose a novel three-factor authentication protocol using fuzzy extractors and lightweight cryptography. Formal analysis via the Real-or-Random (ROR) model and Tamarin Prover confirms its robustness, perfect forward/backward secrecy, mutual authentication, anonymity, and untraceability. Performance comparisons demonstrate reduced overhead and enhanced security, offering a promising framework for IoMT development.
제로트러스트 보안 모델에서 보안관제 시스템 강화 연구 KCI 등재
한국융합보안학회 융합보안논문지 제22권 제2호 2022.06 pp.51-57
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
최근 제로 트러스트에 대한 개념이 도입되며 차세대 보안관제 시스템에 필요한 보안 요소 강화가 필요 하다. 또한, 4차 산업혁명 시대의 보안 패러다임도 바뀌고 있다. 클라우드 컴퓨팅과 코로나 19로 인해 업무 환경이 변화되면서 발생하는 사이버보안 문제는 지속 발생하고 있다. 그리고 이와 동시에 새로운 사이버 공격기법들도 지능화·고도화되고 있는 상황에서 보안을 강화할 미래의 보안관제 시스템이 필요하다. 제로 트러스트 보안 개념은 모든 것을 의심하며 신뢰하지 않는다는 개념을 기반으로 모든 통신을 감시하고 접근 요청자에 대한 엄격한 인증과 최소한의 접근 권한을 핵심으로 보안성을 높인다. 본 논문에서는 기존 보안관제 시스템의 문제점을 이해하고 이를 해결할 수 있는 제로 트러스트 보안 모델을 통해 보안관제 분야의 보안 강화 방안을 제안 한다.
Recently, the concept of zero trust has been introduced, and it is necessary to strengthen the security elements required for the next-generation security control system. Also, the security paradigm in the era of the 4th industrial revolution is c hanging. Cloud computing and the cybersecurity problems caused by the dramatic changes in the work environment due t o the corona 19 virus continue to occur. And at the same time, new cyber attack techniques are becoming more intelligent and advanced, so a future security control system is needed to strengthen security. Based on the core concept of doubting and trusting everything, Zero Trust Security increases security by monitoring all communications and allowing strict auth entication and minimal access rights for access requesters. In this paper, we propose a security enhancement plan in the s ecurity control field through a zero trust security model that can understand the problems of the existing security control system and solve them.
영상관제 도입을 통한 기계경비시스템의 효율적 관리방안 연구
한국경찰복지연구학회 경찰복지연구 제7권 제1호 통권 제12호 2019.06 pp.71-92
※ 기관로그인 시 무료 이용이 가능합니다.
5,800원
본 연구는 기계 경비업체의 오경보에 대한 효과적 대응을 주목적으로 영상관제 시스템 을 기계 경비 시스템에 접목시켜 그 효과를 극대화시킬 방안을 모색하기 위함이다. 과거 1980년대부터 시작된 기계 경비 산업은 현재 다양한 첨단 보안장비 등을 이용하여 범죄 예방 등에 공헌하고 있으며 특히, 국내 CCTV 보급 및 대중화에 큰 영향을 미친 것은 자 명하다 할 것이다. 그러나 40년 이상의 역사를 가진 경비업 분야임에도 불구, 과거부터 기계 경비 산업의 발전을 저해하는 고질적 문제 즉, 오작동·오경보로 인하여 기계 경비사의 관리비용 증가, 오신고로 인한 경찰력의 낭비 등 국가, 사회적 비용이 증대되고 있고 또한 영리 목적 등 의 이유로 위험을 회피하려 민간경비회사가 112신고를 남용한다는 비판과 함께 경비업무 의 취약점인 오경보는 현재까지 개선되지 않고 있다. 이에 경찰청은 지난 2013년 7월1일부터 경찰청장 명의의 감독명령을 발휘하고 선별신 고제도 등을 도입하여 기계 경비사의 오경보에 대한 경찰의 불필요 출동을 줄이고 기계 경비회사의 오작동 및 오경보에 대한 자구노력 등 대책을 마련하려고 하였으나 그 효과 는 미비하였다. 본 논문은 현재 기계 경비회사에 보급화 되어있는 CCTV 즉, 영상정보를 활용하여 오작동 및 오경보에 대한 기계 경비사와 경찰력의 불필요 출동을 감소시키기 위한 효율적 인 관리방안을 제언하고자 한다.
This study has been purposed to maximize effect by combining image control system into video monitoring system as an efficient action for malfunction of machine security enterprise. Machine security industry has contributed its ability on crime prevention by utilizing various high-tech security equipment since 1980s. Especially, supplies of CCTV effecting on the public has been tremendously obvious. Even though the security area has lasted more than 40 years of history, weaknesses of security management increasing national and social costs, such as increase of management cost for machine guardian and waste of police power due to wrong report have not yet been ameliorated with criticism about abuse of 112 report, since security guardians seek profit and convenience due to chronic problems and malfunctions, and avoid and endure risk, which damages development of machine security industry. Hereupon, the National Police Agency has tried to ameliorate actions about decreasing unnecessary moving for machine guardian false alarm by demonstrating supervisor order and introducing selecting report system, and solving problems and malfunctions of machine security enterprises. However, the works have been inadequate. This thesis has been purposed to suggest efficient management plan for decreasing unnecessary moving of police power and machine guardian about the problems and malfunctions by applying CCTV which has been supplied to machine security enterprises, in other words, video monitoring.
4,000원
정보통신의 눈부신 발전은 생활의 편리함과 더불어 산업기술 발전을 도모하였다. 국가 간의 기술 경쟁 시대에 돌입한 현 시점에 국가 뿐만 아니라 기업 간의 기술 확보와 기술 경쟁이 치 열하게 이루어지고 있다. 이렇게 산업기밀의 유출로 인한 피해는 그 회사나 국가의 존폐를 위협 할 정도로 위협적이기 때문에 이를 효과적으로 예방하고 관리하는 기술이 국내․외적으로 이루 어지고 있다. 현재 산업기밀 유출을 방지하기 위한 연구는 크게 물리적 보안 기술과 정보보호 보안 기술로 구분되어 연구되고 있다. 산업기밀 보호에서의 물리적 보안 기술은 출입통제시스 템, 접근권한시스템, 도난방지 시스템과 같은 물리적 공간이나 물리적 장치의 접근과 사용을 보 안 관리하는 것이며, 정보보호 보안 기술은 네트워크 트래픽 모니터링, 이메일 모니터링, USB 사용 모니터링, 기밀 파일 접근 통제 모니터링 등의 통신이나 소프트웨어 및 전자문서의 접근과 사용을 보안 관리하는 기술이다. 본 논문은 산업기밀 보호 체계에 있어서 물리적 보안과 정보보 호의 이런 이분화 된 보안 체계의 문제점을 도출하고 이를 효과적으로 해결하고 융합할 수 있 는 방안을 제시한다.
Information communication the dazzling development life was convenient with to join in and planned an industrial technical advance. Not only the nation with technical security of the enterprise between the description competition keenly in the present point of view which rushes to technical competitive time of the nation between is become accomplished. The damage which is caused by with outflow of industrial secrecy that company prevents this effectively because is threatening at the degree which will threaten the existence of the nation and the technique which manages is become accomplished with the domestic foreign enemy. Prevents an industrial secret outflow the research for on a large scale with physical security technique and information security to be divided, is researched.
부문 보안관제센터의 클라우드 보안관제 연동체계 설계 및 검증 KCI 등재
한국융합보안학회 융합보안논문지 제25권 제3호 2025.09 pp.39-50
※ 기관로그인 시 무료 이용이 가능합니다.
4,300원
대한민국 정부는 ‘민간 클라우드 도입 활성화 정책’ 및 ‘디지털 플랫폼 정부’ 구현을 위해 국가․공공기관 정보시스템의 클 라우드 네이티브 전환을 추진하고 있다. 또한 국가정보원은 국가망 보안체계(N2SF)를 개선하여 국가․공공기관에서 클라우드 오피스 등 신기술의 공공분야 적용을 시키려고 노력하고 있다. 그러나 클라우드 서비스를 활용하는 국가․공공기관 정보서비 스의 클라우드 보안관제 및 침해사고 대응 분야는 아직 초기 수준이다. 부문 보안관제센터에서 클라우드 환경에 따라 보안관 제 탐지장비를 설치 및 사이버공격을 탐지하고, 탐지된 결과를 전송하는 부분, 즉 보안관제 연동에 많은 시행착오를 겪고 있 고, 연동체계 및 이에 대한 규격도 없는 실정이다. 본 논문에서는 부문 보안관제센터에서의 클라우드 환경에서의 보안관제를 위한 연동체계 설계하고, 설계된 모델을 국내 클라우드 서비스 제공자(CSP) 대상으로 가상환경에서 실험하여 한계점들을 도 출하여 효과적인 클라우드 환경의 보안관제 연동체계를 제시하는데 본 연구의 의의가 있다.
The Korean government is promoting the cloud-native transformation of the information system of national and public institutions to implement a 'policy to promote the introduction of private clouds' and a 'digital platform government'. In addition, the National Intelligence Service is trying to improve the national network separation system to apply new technologies to public sectors such as cloud offices in national and public institutions. However, the field of cloud security control and infringement of national and public institution information services using cloud services is still at an early stage. Depending on the cloud environment, the sector security control center is experiencing a lot of trial and error in installing security control detection equipment, detecting cyberattacks, and transmitting detected results. This study is meaningful in designing an interworking system for security control in a cloud environment in a sector security control center and experimenting with the designed model in a virtual environment for domestic cloud service providers (CSPs) to derive limitations.
코로나19 환경에서 무중단 보안관제센터 구성 및 운영 강화 연구 KCI 등재
한국융합보안학회 융합보안논문지 제21권 제1호 2021.03 pp.25-31
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
본 연구의 목적은 코로나19 바이러스 유행 시기에 교대근무체계로 운영하는 보안관제센터를 무중단으로 유지하기 위 한 연구 이다. 사이버 보안위협에 대응하는 보안관제 시설은 24시간 365일 실시간으로 운영해야 하는 필수 보안시설이 며, 보안운영 및 관리적인 부분에서 매우 중요하다. 만약 감염병 유행, 시스템 장애, 물리적 영향 등 보안관제 시설이 폐 쇄되거나 영향이 있는 경우 실시간 사이버 보안위협에 대응 할 수 없으며, 보안문제에 치명적이 될 수 있다. 최근 코로 나19 바이러스 유행으로 인한 시설 폐쇄, 장마철로 인한 보안시스템 가용성 장애 등 보안관제 시설 운영을 할 수 없는 사례가 확인되고 있으며, 이 외에도 물리적 영향으로 보안관제 시설을 운영 할 수 없는 상황에 대한 대비가 필요하다. 본 논문에서는 보안관제 시설을 다중화 시설로 구성하여 폐쇄되는 상황 발생 시 무중단으로 운영 할 수 있는 방안을 제안한다.
The purpose of this study was to keep the Security Control Center, which operates under a shift system, uninterrupted during the COVID-19 virus epidemic. Security facilities responding to cybersecurity threats are essential security facilities that must be operated 24 hours a day, 365 days a day in real time, and are critical to security operations and management. If security facilities such as infectious disease epidemic, system failure, and physical impact are closed or affected, they cannot respond to real-time cyberattacks and can be fatal to security issues. Recently, there have been cases in which security system facilities cannot be operated, such as the closure of facilities due to the COVID-19 virus epidemic and the availability of security systems due to the rainy season, and other cases need to be prepared. In this paper, we propose a plan to configure a security system facility as a multiplexing facility and operate it as an alternative in the event of a closed situation.
교육기관을 위한 클라우드 보안관제 연동체계 구축 방안 KCI 등재
한국융합보안학회 융합보안논문지 제25권 제1호 2025.03 pp.37-46
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
정부의 ‘민간 클라우드 도입 활성화 정책’ 및 ‘디지털 플랫폼 정부(digital platform government)’ 구현을 위해 교육기관의 민간 클라우드 도입이 확대되고 있다. 그러나 교육기관의 클라우드 환경에서의 사이버공격 대응과 보안관제 분야는 아직 초기 수준이다. 특히, 정보보안업체와 부처 사이버안전센터에서 클라우드 서비스 제공자(CSP)의 네트워크 환경에 따라 보안관제 탐지 장비를 설치하고, 탐지된 결과를 부처 사이버안전센터로 전송하는 부분, 즉 보안관제 연동에 많은 어려움을 겪고 있다. 본 논문에서는 2021년 국가․공공기관에서 개발한 사이버공격 탐지프로그램을 기반으로 클라우드 환경에서 클라우드 서비스 보안인증(CSAP) 업체를 대상으로 보안관제 연동을 위한 방법론을 제시한다. 이를 통해 교육기관에 특화된 클라우드 환경과 유연하고 효과적인 보안관제 모델을 제시하는데 본 연구의 의의가 있다.
The government’s "Policy to Promote the Adoption of Private Cloud" and the implementation of the "Digital Platform Government" have led to an increase in the adoption of private cloud in educational institutions. However, the response to cyberattacks and the field of security monitoring in cloud environments within educational institutions are still in their early stages. In particular, there are significant challenges in the integration of security monitoring, where security monitoring detection devices are installed based on the network environment of cloud service providers (CSPs) by information security companies and ministry cyber safety centers, and the detected results are transmitted to the ministry's cyber safety center. This paper presents a methodology for security monitoring integration in cloud environments targeting Cloud Security Assurance Providers (CSAPs) based on the cyberattack detection programs developed by national and public institutions in 2021. The significance of this study lies in proposing a cloud environment tailored to educational institutions, as well as a flexible and effective monitoring model.
중소기업을 위한 정보보호등급별 보안관제서비스에 관한 연구
한국산업안보학회(구 한국산업보안연구학회) 한국산업보안연구 제2권 제2호 통권 제3호 2011.12 pp.91-102
※ 기관로그인 시 무료 이용이 가능합니다.
4,300원
이 논문에서는 중소기업 보안관제서비스를 제공하기 위하여 업무 의존도에 따라서 중소기업을 분류하고 이를 정보보호등급으로 적용하는 연구를 수행하였다. 중소기업의 종류가 다양하고 업무의 정보기술 의존도가 각 기업마다 편차가 크게 발생한다. 이를 고려하지 않고 획일화된 방법으로 관제를 수행하는 경우 효율성과 효과성에 문제가 발생할 수 있으므로 이를 보완하기 위해 업무의 정보기술의존도에 따라 중소기업을 재분류하였다. 또한 각 중소기업의 업무 특성에 따라서 정보보호의 요구사항이 달라지므로 이를 보완하기 위한 보안등급을 적용하였다. 이에 따라 중소기업 보안관제에 있어 중소기업의 특성에 맞는 서비스 제공이 가능하고 중소기업에서는 효과적이고 효율적인 보호활동을 지원할 수 있다.
This paper shows the results of applying security levels to small and medium-sized company to provide a security monitoring service according to dependancy on IT. There are some differences in relationships with information technologies of businesses in each company. It can be ineffectiveness and inefficiency if the monitoring service could be made without considering IT environments of a company. Therefore, the company is categorized based on the level of reliance. Also, a level of security is applied since the security requirements are varied with business areas on each company. This approach can support the effective and efficient security activities in tailored security monitoring for a small and medium-sized company.
4,000원
국가정보원 자료에 의하면, 산업기술 유출로 인한 피해액은 수십 조원에 이르고 있고, 피해유형은 내부자 유출, 공동연구, 해킹, 불법유출, 위장합작 등으로 나눌 수 있으나 그 중 80%가 물리적인 보안과 연계된 내부자 유출로 나타나고 있다. IT와 비IT의 융합이 가속화되고 영역간의 경계 및 구분이 불명확해지면서 정보보호산업은 점차 지식정보보안산업으로 확대되는 개인정보보호중심으로 지속적으로 성장해왔으나, 향후 정보보호산업은 IT 보안기술 및 제품간 융합, IT 보안과 물리 보안간 융합, IT 융합산업보안으로 집중된다. 본 논문에서는 기업 정보유출 방지를 위해서 논리적 보안과 물리적 보안이 모두 동일 수준에서 관리 되어야 하며, 특히, 물리적인 보안시스템(출입통제시스템, 영상보안시스템등)과 IT 통합보안관제시스템의 융합으로 외부 공격 및 내부자 유출의 예방, 차단, 분석의 시너지효과를 극대화 할수 있는 융합보안관제시스템 개선 모델을 제안 한다.
According to the NIS, damages due to leaking industrial technology are reaching tens of trillion won. The type of damages are classified according to insider leaks, joint research, and hacking, illegal technology leaks and collaborated camouflaged. But 80% of them turned out to be an insider leak about connecting with physical security. The convergence of IT and non IT is accelerating, and the boundaries between all area are crumbling. Information Security Industry has grown continuously focusing Private Information Security which is gradually expanding to Knowledge Information Security Industry, but Information Security Industry hereafter is concentrated with convergence of IT Security Technology and product, convergence of IT Security and Physical Security, and IT convergence Industry Security. In this paper, for preventing company information leaks, logical security and physical security both of them are managed at the same level. In particular, using convergence of physical security systems(access control systems, video security systems, and others) and IT integrated security control system, convergence security monitoring model is proposed that is the prevention of external attacks and insider leaks, blocked and how to maximize the synergy effect of the analysis.
4,000원
고도화된 정보통신기술 환경에서 내외부망의 경계가 모호해진 문제를 해결하기 위한 방안으로, 본 논문은 제로트러스트 보 안 모델의 필요성을 강조한다. 전통적인 경계 기반 보안 모델의 한계를 극복하고자 제로트러스트 보안 전략을 기반으로 체계 적인 보안 관제 체크리스트를 개발하여 조직의 보안 시스템에 통합, 전반적인 보안 구조를 개선한다. 이 체크리스트는 모든 통신의 보안 검증을 요구하고, 네트워크 내 보안을 강화하는 것을 목표로 하며, 조직이 미래 지향적인 사이버 보안 전략을 수 립하는 데 필수적인 기반을 제공하고, 실제 보안 환경에 적용될 때 보안 강화와 위협 최소화에 크게 기여할 것으로 기대된다.
To address the problem of blurred internal and external network boundaries in an advanced ICT environment, this paper emphasizes the necessity of the zero-trust security model. In an effort to overcome the limitations of traditional boundary-based security models, it develops a systematic security management checklist based on zero-trust security strategies, integrating it into the organization's security system to improve the overall security architecture. This checklist demands security verification for all communications and aims to strengthen network security, providing a crucial foundation for organizations to establish future-oriented cyber security strategies. It is expected to significantly contribute to enhancing security and minimizing threats when applied in actual security environments..
4,000원
본 논문은 플로우 시각화 기반의 네트워크 보안 상황 감시 방법인 VisFlow를 제안하며, 기존 트래픽 플로우 시각화기술의 단점인 대량 트래픽 발생 시의 직관성 상실 문제, 대칭적 주소 공간에 의한 반사현상 문제, 종단간 연결 의미의상실 문제를 해결하고자 한다. VisFlow는 단순하고 효율적인 보안 시각화 인터페이스로써 플로우 시각화 기술을 활용하여 개별적인 트래픽 데이터들에서는 볼 수 없었던 다양한 네트워크 현상들을 패턴으로 형상화하고 관리 네트워크 내의 보안 상황을 실시간으로 분석 및 감시하는 방법이다. 트래픽 플로우의 포트 역할 분석 방법을 이용하여 노드 유형과중요 정보를 식별 분류하고, 분류된 정보는 중요도에 따라 2D/3D 공간 상에 단순화 및 강조하여 표시함으로써 직관성과 실용성을 높인다. 또한, IP주소값에 기반한 비대칭적 노드 배치를 통해 반사현상 문제를 해결하고 노드간의 연결선을 활용하여 종단간의 세션 의미를 유지함으로써 정보성은 높인다. 관리자는 VisFlow를 통해 방대한 트래픽 데이터를쉽게 탐색하고 전체 네트워크 상황을 직관적으로 파악함으로써 네트워크 보안 상황을 효과적으로 감시할 수 있다.
In this paper we propose a new method of security visualization, VisFlow, using traffic flows to solve theproblems of existing traffic flows based visualization techniques that were a loss of end-to-end semantics ofcommunication, reflection problem by symmetrical address coordinates space, and intuitive loss problem in mass oftraffic. VisFlow, a simple and effective security visualization interface, can do a real-time analysis and monitoringthe situation in the managed network with visualizing a variety of network behavior not seen in the individualtraffic data that can be shaped into patterns. This is a way to increase the intuitiveness and usability by identifyingthe role of nodes and by visualizing the highlighted or simplified information based on their importance in 2D/3Dspace. In addition, it monitor the network security situation as a way to increase the informational effectively usingthe asymmetrical connecting line based on IP addresses between pairs of nodes. Administrator can do a real-timeanalysis and monitoring the situation in the managed network using VisFlow, it makes to effectively investigate themassive traffic data and is easy to intuitively understand the entire network situation.
다크웹 환경에서 산업보안위협의 보안관제 모델 연구 KCI 등재
한국산업안보학회(구 한국산업보안연구학회) 한국산업보안연구 제9권 제1호 통권 제15호 2019.06 pp.117-139
※ 기관로그인 시 무료 이용이 가능합니다.
6,000원
최근 내부정보유출 뿐만 아니라 다양한 형태의 산업보안과 관련된 위협 빈도 가 많아지고 있다. 사이버 위협을 예측하는 것은 위협을 예방하고 대응하기 위 한 방법 중 하나이다. 현재 다크웹 환경에는 국내 산업에 여러 가지 위협을 줄 수 있는 요소들로 가득하다. 특히 산업보안 유출 및 수집자들은 무기, 개인정보, 기밀자료, 기타 범죄 등 산업범죄와 관련된 정보들을 교환하고 있으며, 그 정보 들을 토대로 위협을 탐지하고 예측하는 것은 국내 산업을 보호하는 새로운 방법 이 될 수 있다. 이미 국내외 기업에서는 다크웹 위협 인텔리전스 서비스를 제공 하고 있다. 기업에서 제공하는 서비스들은 위협 인텔리전스를 통해 많은 성과 를 거두고 있으나 정보보안 분야에 한정하고 있어 산업보안까지 영역을 넓혀 적용해야한다. 따라서 기존 선행연구 및 기업의 서비스를 기준으로 정보를 수집하는 도구와 수집된 정보를 이용해 보안관제를 할 수 있는 수집 방안을 제안한다.
Recently, threats related to various types of industrial security as well as internal information leakage are increasing. Predicting cyber threats is one way to prevent and respond to threats. The darkweb environment is now filled with elements that can pose a number of threats to the domestic industry. In particular, industrial security spills and collectors exchange information related to industrial crimes such as weapons, personal information, confidential data, and other crimes, and predicting threats based on that information can be a new way of protecting domestic industries. Already, domestic and foreign companies are providing dark web threat security monitoring services. Though the services provided by enterprises have achieved a great deal of achievement through threat security monitoring. They are limited to the information security field. Therefore, we will study tools to gather information on the basis of existing research and enterprise services and how to generate security monitoring using collected information.
민간경비(Private Security) 도입을 통한 전자감독제도 부분 민영화 KCI 등재
한국보안관리학회(구 한국경호경비학회) 시큐리티 연구 제76호 2023.09 pp.193-216
※ 기관로그인 시 무료 이용이 가능합니다.
6,100원
2020년 법률개정을 통해 전자감독 대상범죄가 특정범죄(성폭력 범죄, 미성년자 유괴 범 죄, 살인 범죄, 강도 범죄 및 스토킹 범죄<개정 2023. 7. 11.>) 에서 일반 범죄까지 확대되었다. 그에 반해 전담⋅대응인력 증원은 전자감독 대상범죄 확대 속도에 따라가지 못하고 있는 게 사실이며, 전담⋅대응 인력으로 보호관찰관과 더불어 공무직 근로자인 무도실무 관 역시 무기계약직 으로 불안정한 처우에 어려움을 겪고 있는 게 현실이다. 최근 이슈였던 조두순 사건, 김근식 사건 등 강력범죄 사범들의 출소로 인해 발생되어지 는 사회불안을 경험하였으며, 전자감독 대상자임에도 불구하고 위치추적전자장치를 훼손 하고 감시망을 피해 달아나는 사례를 심심치 않게 접하게 된다. 2022년 7월 기준 전자감독 대상자 범죄 유형별 사범 현황을 살펴보면 전자감독 대상자 총원 4,499명중 성폭력 사범 2,604명 / 미성년자 유괴 사범 15명 / 살인 사범 526명 / 강도 사범 153명 / 일반 사범 925명이며, 전자감독 보석 대상도 276명에 달한다. 이중 준수사항 위반건수만 하더라도 2022년 7월 기준 7,185건이며 위치추적 전자장치 훼손은 5건에 달하 는 걸로 파악되고 있다. 이와 같은 현실을 비춰볼 때 전담⋅대응인력의 운영방식 개선이 시급한 시기이며, 전문 민간경비인력을 활용한 전자감독제도 부분 민영화를 통해 국민생활 안정과 더불어 업무 효율성을 향상시켜야할 시기라고 생각되어 그 방안을 모색해 보고자 한다.
Through the 2020 revision of the law, crimes subject to electronic monitoring have been expanded from specific crimes (sexual violence crimes, minor kidnapping crimes, murder crimes, robbery crimes, and stalking crimes) to general crimes. On the other hand, it is true that the increase in dedicated and responsive personnel is not keeping up with the pace of expanding crimes subject to electronic monitoring, and the fact is that probation officers and civil servants are also having difficulty treating them as indefinite contract workers. He experienced social anxiety caused by the release of violent crime offenders such as the Cho Doo-soon and Kim Geun-sik, which were recent issues, and he often encounters cases of damaging location tracking electronic devices and fleeing the surveillance network even though he is subject to electronic monitoring. As of July 2022, out of the total 4,499 people subject to electronic monitoring, 2,604 sexual violence offenders, 15 minor kidnappings, 526 murder offenders, 153 robbery offenders, and 925 general offenders are subject to electronic monitoring bail. Among them, the number of violations of compliance alone was 7,185 as of July 2022, and five cases of damage to location-tracking electronic devices were identified. Given this reality, it is an urgent time to improve the operation method of dedicated and responsive personnel, and it is time to stabilize people's lives and improve work efficiency through partial privatization of the electronic monitoring system using professional private security personnel.
0개의 논문이 장바구니에 담겼습니다.
선택하신 파일을 압축중입니다.
잠시만 기다려 주십시오.