@article{ART001884611},
author={유영록 and Seongchae Seo and Lee Sang Joon and 김병기},
title={IT GRC-based IT security internal control system},
journal={Journal of Knowledge Information Technology and Systems},
issn={1975-7700},
year={2014},
volume={9},
number={3},
pages={369-378}
TY - JOUR
AU - 유영록
AU - Seongchae Seo
AU - Lee Sang Joon
AU - 김병기
TI - IT GRC-based IT security internal control system
JO - Journal of Knowledge Information Technology and Systems
PY - 2014
VL - 9
IS - 3
PB - Korea Knowledge Information Technology Society
SP - 369
EP - 378
SN - 1975-7700
AB - In this thesis, a novel IT security internal control system is proposed in order to guarantee the enterprise-wide perspective internal control which accommodates administrative, technical and physical internal control enforcement plan. Firstly, the proposed IT security internal control system synthetically manages IT security processes which are composed of information security processes, privacy processes and security service processes from the perspective of governance. Secondly, it integrates IT related logs based on Big Data to synthetically monitor information security control breach and information leakage anomaly, monitors Key Risk Indicator (KRI) for the information security threat scenario, analyses, alarms and reponses results of monitoring them from the perspective of the risk management. Lastly, it integrates and manages law and regulations related to IT security from the perspective of compliance and provides the automated and integrated IT security internal control environments to the system managers. The proposed thesis proves to be an automatical and efficient scheme to offer the IT security internal control environments through the case of a system installation in a financial company.
KW - IT GRC;IT Internal Controls;Securities;Monitoring;IT Risks;IT Compliance
DO -
UR -
ER -
유영록, Seongchae Seo, Lee Sang Joon and 김병기. (2014). IT GRC-based IT security internal control system. Journal of Knowledge Information Technology and Systems, 9(3), 369-378.
유영록, Seongchae Seo, Lee Sang Joon and 김병기. 2014, "IT GRC-based IT security internal control system", Journal of Knowledge Information Technology and Systems, vol.9, no.3 pp.369-378.
유영록, Seongchae Seo, Lee Sang Joon, 김병기 "IT GRC-based IT security internal control system" Journal of Knowledge Information Technology and Systems 9.3 pp.369-378 (2014) : 369.
유영록, Seongchae Seo, Lee Sang Joon, 김병기. IT GRC-based IT security internal control system. 2014; 9(3), 369-378.
유영록, Seongchae Seo, Lee Sang Joon and 김병기. "IT GRC-based IT security internal control system" Journal of Knowledge Information Technology and Systems 9, no.3 (2014) : 369-378.
유영록; Seongchae Seo; Lee Sang Joon; 김병기. IT GRC-based IT security internal control system. Journal of Knowledge Information Technology and Systems, 9(3), 369-378.
유영록; Seongchae Seo; Lee Sang Joon; 김병기. IT GRC-based IT security internal control system. Journal of Knowledge Information Technology and Systems. 2014; 9(3) 369-378.
유영록, Seongchae Seo, Lee Sang Joon, 김병기. IT GRC-based IT security internal control system. 2014; 9(3), 369-378.
유영록, Seongchae Seo, Lee Sang Joon and 김병기. "IT GRC-based IT security internal control system" Journal of Knowledge Information Technology and Systems 9, no.3 (2014) : 369-378.