본문 바로가기
  • Home

The Integrated Cyber SRM(Security Risk Monitoring) System Based on the Patterns of Cyber Security Charts

  • Journal of The Korea Society of Computer and Information
  • Abbr : JKSCI
  • 2019, 24(11), pp.99-107
  • DOI : 10.9708/jksci.2019.24.11.099
  • Publisher : The Korean Society Of Computer And Information
  • Research Area : Engineering > Computer Science
  • Received : September 23, 2019
  • Accepted : October 29, 2019
  • Published : November 29, 2019

LEE GANG SOO 1 Hyun Mi Jung 2

1한남대학교
2한국과학기술정보연구원

Accredited

ABSTRACT

The "Risk management" and "Security monitoring" activities for cyber security are deeply correlated in that they prepare for future security threats and minimize security incidents. In addition, it is effective to apply a pattern model that visually demonstrates to an administrator the threat to that information asset in both the risk management and the security system areas. Validated pattern models have long-standing "control chart" models in the traditional quality control sector, but lack the use of information systems in cyber risk management and security systems. In this paper, a cyber Security Risk Monitoring (SRM) system that integrates risk management and a security system was designed. The SRM presents a strategy for applying 'security control' using the pattern of 'control charts'. The security measures were integrated with the existing set of standardized security measures, ISMS, NIST SP 800-53 and CC. Using this information, we analyzed the warning trends of the cyber crisis in Korea for four years from 2014 to 2018 and this enables us to establish more flexible security measures in the future.

Citation status

* References for papers published after 2023 are currently being built.