쌍대비교를 활용한 기업 유형 분류에 따른 보안 전략 우선순위 결정
- Title
- 쌍대비교를 활용한 기업 유형 분류에 따른 보안 전략 우선순위 결정
- Other Titles
- Prioritize Security Strategy based on Enterprise Type Classification Using Pair Comparison
- Author
- 백동현
- Keywords
- Information Security; Establishment of a Strategy; Company Classification; Paired comparison method
- Issue Date
- 2016-12
- Publisher
- 한국산업경영시스템학회
- Citation
- 산업경영시스템학회지, v. 39, No. 4, Page. 97-105
- Abstract
- As information system is getting higher and amount of information assets is increasing, skills of threatening subjects are more advanced, so that it threatens precious information assets of ours. The purpose of this study is to present a strategic direction for the types of companies seeking access to information security. The framework classifies companies into eight types so company can receive help in making decisions for the development of information security strategy depending on the type of company it belongs to. Paired comparison method survey conducted by a group of information security experts to determine the priority and the relative importance of information security management elements. The factors used in the security response strategy are the combination of the information security international certification standard ISO 27001, domestic information protection management system certification K-ISMS, and personal information security management system certification PIMS. Paired comparison method was then used to determine strategy alternative priorities for each type. Paired comparisons were conducted to select the most applicable factors among the 12 strategic factors. Paired comparison method questionnaire was conducted through e-mail and direct questionnaire survey of 18 experts who were engaged in security related tasks such as security control, architect, security consulting. This study is based on the idea that it is important not to use a consistent approach for effective implementation of information security but to change security strategy alternatives according to the type of company. The results of this study are expected to help the decision makers to produce results that will serve as the basis for companies seeking access to information security first or companies seeking to establish new information security strategies.
- URI
- http://scholar.dkyobobook.co.kr/searchDetail.laf?barcode=4010025029605https://repository.hanyang.ac.kr/handle/20.500.11754/103011
- ISSN
- 2005-0461
- Appears in Collections:
- COLLEGE OF BUSINESS AND ECONOMICS[E](경상대학) > BUSINESS ADMINISTRATION(경영학부) > Articles
- Files in This Item:
There are no files associated with this item.
- Export
- RIS (EndNote)
- XLS (Excel)
- XML