RISS 학술연구정보서비스

검색

인기 검색어

    다국어 입력

    http://chineseinput.net/에서 pinyin(병음)방식으로 중국어를 변환할 수 있습니다.

    변환된 중국어를 복사하여 사용하시면 됩니다.

    예시)
    • 中文 을 입력하시려면 zhongwen을 입력하시고 space를누르시면됩니다.
    • 北京 을 입력하시려면 beijing을 입력하시고 space를 누르시면 됩니다.
    닫기
    KCI등재

    주요기반시설 서비스의 안정적 운영을 위한 보안 프레임워크 설계에 관한 연구 = A Study on the Security Framework Design for Stable Operation of Critical Infrastructure Service

    한글로보기

    https://www.riss.kr/link?id=A102599104

    • 0

      상세조회
    • 0

      다운로드
    서지정보 열기
    • 내보내기
    • 내책장담기
    • 공유하기
    • 오류접수

    부가정보

    다국어 초록 (Multilingual Abstract) kakao i 다국어 번역

    Critical infrastructure has been operating in a closed environment with a completely separate information system and in the private area. However, with the current ICT environment changes due to convergence and open platforms it has increased the threats and risks to critical infrastructure. The importance of cyber security is increasing in the infrastructure control system, such as the outbreak of Ukraine blackout in 2015 by a malicious code called black energy . This thesis aims to recognize the importance and necessity of protecting the critical infrastructure service, designing a security framework reflecting environmental and characteristic changes, and analyzing the management system suitable for a security framework. We also propose a theoretical basis for constructing a new security framework by comparing and analyzing seven international security management system standards, such as NIST 800-82 and IEC 62443-2-1, which are used in the control system. As a result, the environment surrounding critical infrastructure changes with the characteristics of connectivity, openness, and finality was studied, and as a response to this, many scholars and institutions present critical infrastructure security frameworks as cycle enhancement type structures, risk management structures, and management domain expansion structures. In response, the security framework encompassing these structures, CISF (Critical Infrastructure Security Framework), was designed. Additionally, through the security related international standard and criterion analysis, as a newly designed security standard suitable for CISF, IEC 62443-2-1 is reviewed and suggestions are made.
    번역하기

    Critical infrastructure has been operating in a closed environment with a completely separate information system and in the private area. However, with the current ICT environment changes due to convergence and open platforms it has increased the thre...

    Critical infrastructure has been operating in a closed environment with a completely separate information system and in the private area. However, with the current ICT environment changes due to convergence and open platforms it has increased the threats and risks to critical infrastructure. The importance of cyber security is increasing in the infrastructure control system, such as the outbreak of Ukraine blackout in 2015 by a malicious code called black energy . This thesis aims to recognize the importance and necessity of protecting the critical infrastructure service, designing a security framework reflecting environmental and characteristic changes, and analyzing the management system suitable for a security framework. We also propose a theoretical basis for constructing a new security framework by comparing and analyzing seven international security management system standards, such as NIST 800-82 and IEC 62443-2-1, which are used in the control system. As a result, the environment surrounding critical infrastructure changes with the characteristics of connectivity, openness, and finality was studied, and as a response to this, many scholars and institutions present critical infrastructure security frameworks as cycle enhancement type structures, risk management structures, and management domain expansion structures. In response, the security framework encompassing these structures, CISF (Critical Infrastructure Security Framework), was designed. Additionally, through the security related international standard and criterion analysis, as a newly designed security standard suitable for CISF, IEC 62443-2-1 is reviewed and suggestions are made.

    더보기

    목차 (Table of Contents)

    • 1. 서 론
    • 2. 주요기반시설 보호의 정의 및 관리 체계의 소개
    • 3. 주요기반시설 보호를 위한 프레임 워크 설계
    • 4. 주요기반시설 보호를 위한 국제 표준 및 기준 비교 분석
    • 5. 결 론
    • 1. 서 론
    • 2. 주요기반시설 보호의 정의 및 관리 체계의 소개
    • 3. 주요기반시설 보호를 위한 프레임 워크 설계
    • 4. 주요기반시설 보호를 위한 국제 표준 및 기준 비교 분석
    • 5. 결 론
    • References
    더보기

    참고문헌 (Reference)

    1 임길환, "제어시스템 보안취약점 현황 및 대책에 관한 연구" 고려대학교 정보보호대학원 2011

    2 Lee, H.J, "The Study on Security Enhancement of National Control System for Critical Infrastructure : Focusing on Comparison about Policy of Major Countries and Domestice" Sangmyung University 2016

    3 Langner, R, "The RIPE Framework : A Process-Driven Approach towards Effective and Sustainable Industrial Control System Security" Langner Communications GmbH 2013

    4 Jeimy, J, "The Information Security Function : Current and Emerging Pressures From Information Insecurity" 6 : 2014

    5 유지연, "Shadow IT를 고려한 새로운 관리체계 도입에 관한 연구" 한국IT서비스학회 15 (15): 33-50, 2016

    6 Nanni, G, "Security Posture for Critical Information Infrastructure Protection(CIIP)" 2015

    7 Sodoma, P, "Resiliency Rules : 7 Steps for Critical Infrastructure Protection" Microsoft 2007

    8 Alcaraz, C, "Critical Infrastructure Protection : Requirements and Challenges for the 21st Century" 8 : 53-66, 2015

    9 Suter, M, "A Generic National Framework For Critical Information Infrastructure Protection(CIIP)"

    10 Bahşi, H, "A Conceptual Nationwide Cyber Situational Awareness Framework for Critical Infrastructures" 9417 : 3-10, 2015

    1 임길환, "제어시스템 보안취약점 현황 및 대책에 관한 연구" 고려대학교 정보보호대학원 2011

    2 Lee, H.J, "The Study on Security Enhancement of National Control System for Critical Infrastructure : Focusing on Comparison about Policy of Major Countries and Domestice" Sangmyung University 2016

    3 Langner, R, "The RIPE Framework : A Process-Driven Approach towards Effective and Sustainable Industrial Control System Security" Langner Communications GmbH 2013

    4 Jeimy, J, "The Information Security Function : Current and Emerging Pressures From Information Insecurity" 6 : 2014

    5 유지연, "Shadow IT를 고려한 새로운 관리체계 도입에 관한 연구" 한국IT서비스학회 15 (15): 33-50, 2016

    6 Nanni, G, "Security Posture for Critical Information Infrastructure Protection(CIIP)" 2015

    7 Sodoma, P, "Resiliency Rules : 7 Steps for Critical Infrastructure Protection" Microsoft 2007

    8 Alcaraz, C, "Critical Infrastructure Protection : Requirements and Challenges for the 21st Century" 8 : 53-66, 2015

    9 Suter, M, "A Generic National Framework For Critical Information Infrastructure Protection(CIIP)"

    10 Bahşi, H, "A Conceptual Nationwide Cyber Situational Awareness Framework for Critical Infrastructures" 9417 : 3-10, 2015

    더보기

    동일학술지(권/호) 다른 논문

    동일학술지 더보기

    더보기

    분석정보

    View

    상세정보조회

    0

    Usage

    원문다운로드

    0

    대출신청

    0

    복사신청

    0

    EDDS신청

    0

    동일 주제 내 활용도 TOP

    더보기

    주제

    연도별 연구동향

    연도별 활용동향

    연관논문

    연구자 네트워크맵

    공동연구자 (7)

    유사연구자 (20) 활용도상위20명

    인용정보 인용지수 설명보기

    학술지 이력

    학술지 이력
    연월일 이력구분 이력상세 등재구분
    2026 평가 재인증평가 신청대상 (재인증)
    2020-01-01 등재 등재학술지 유지 (재인증) KCI등재
    2017-01-01 등재 등재학술지 유지 (계속평가) KCI등재
    2014-05-28 학술지명변경 외국어명 : Journal of the Korea Society of IT Services -> Journal of Information Technology Services KCI등재
    2013-01-01 등재 등재학술지 유지 (등재유지) KCI등재
    2010-01-01 등재 등재학술지 선정 (등재후보2차) KCI등재
    2009-01-01 등재 등재후보 1차 PASS (등재후보1차) KCI등재후보
    2008-01-01 등재 등재후보학술지 유지 (등재후보2차) KCI등재후보
    2007-01-01 등재 등재후보 1차 PASS (등재후보1차) KCI등재후보
    2006-08-11 학술지명변경 한글명 : 한국SI학회지 -> 한국IT서비스학회지
    외국어명 : Journal of the Korea Society of System Integration -> Journal of the Korea Society of IT Services
    KCI등재후보
    2006-08-11 학회명변경 한글명 : 한국SI학회 -> 한국IT서비스학회
    영문명 : Korea Society Of System Integration -> Korea Society Of IT Services
    KCI등재후보
    2006-06-21 학회명변경 한글명 : 한국SI학회 -> 한국IT서비스학회
    영문명 : Korea Society Of System Integration -> Korea Society Of IT Services
    KCI등재후보
    2005-01-01 등재 등재후보학술지 선정 (신규평가) KCI등재후보
    더보기

    학술지 인용정보

    학술지 인용정보
    기준연도 WOS-KCI 통합IF(2년) KCIF(2년) KCIF(3년)
    2016 0.49 0.49 0.5
    KCIF(4년) KCIF(5년) 중심성지수(3년) 즉시성지수
    0.48 0.47 0.627 0.17
    더보기

    이 자료와 함께 이용한 RISS 자료

    나만을 위한 추천자료

    해외이동버튼