自治体における個人情報保護のためのリスクマネジメント手法に関する実証研究(大会報告論文:システムのリスクと安全を考える)
スポンサーリンク
概要
- 論文の詳細を見る
As progresses of electronic government systems such as the resident register network system, the electronic application and the others in local governments, electronic risks such as Unauthorized Computer Access, Computer Viruses, Denial of Service Attack and Leakage of the Personal Data is increasing against the local governments, too. Under this situation, local governments must carry out the assessments of assets, threats and risks to maintain the information security levels beyond baseline levels. This is because the useful techniques and examples of risk analysis indispensable to the information security risk management do not exist. Therefore, they make their security policy from the ready-made model, and do not execute the information security audit so much. So in Hyogo Prefectural Government, we constructed the risk management method for guaranteeing safety by the technique consisting mainly of a log analysis and a pseudo attack based on the methods of ISO/IEC 17799 and applied it for three years. As a result, by staff in Hyogo Prefectural Government an effective risk management cycle was able to be constructed in a short term, and the effectiveness of these methods was proved.
- 社会・経済システム学会の論文
- 2005-11-12
著者
関連論文
- 自治体の情報資産に対するリスクマネジメントサイクルの構築に関する研究 : 兵庫県における実証事例による
- 参画と協働のためのICT活用のあり方に関する研究(非営利価値と幸福・不幸の社会経済システム)
- 【特別講演】兵庫県における情報通信基盤の運用と課題
- 自治体における個人情報保護のためのリスクマネジメント手法に関する実証研究(大会報告論文:システムのリスクと安全を考える)