:::

詳目顯示

回上一頁
題名:以BS 10012為基礎評估大專校院導入個人資訊管理制度之研究
書刊名:電腦稽核
作者:鄒宛璉黃明達 引用關係
出版日期:2012
卷期:25
頁次:頁72-88
主題關鍵詞:電腦處理個人資料保護法個人資料保護法個人資訊管理制度BS 10012PIMSComputer Processing Personal Data Protection ActPersonal Data Protection ActPersonal information management system
原始連結:連回原系統網址new window
相關次數:
  • 被引用次數被引用次數:期刊(1) 博士論文(0) 專書(0) 專書論文(0)
  • 排除自我引用排除自我引用:1
  • 共同引用共同引用:0
  • 點閱點閱:1
根據趨勢科技於「2010上半年全球資安威脅報告」中指出,教育界在上半年所感染的惡意程式數量最多,幾乎有50%的感染出現於學校和大專院校,對擁有大量個人資料的學校而言,不僅會使校內個人資料外洩,造成校譽受損,更影響學校永續發展。因此本研究以「BS 10012:2009個人資訊管理制度」(Personal Information Management System, PIMS)之「規劃」、「實行與運作」、「監督與審查」、「改善」四構面為基礎,了解目前大專校院的個人資訊管理制度,並提出改善建議。研究發現若個人資料不慎外洩,93.4%的電算中心管理層認為校譽受損衝擊最大,56.9%考慮再加強內部稽核。而目前大專校院的個人資訊管理制度,多處於BS 10012的「規劃」和「實行與運作」構面,對於「監督與審查」和「改善」構面較缺乏控管。若依地區劃分比較,各區域的學校於四個構面無顯著差異,僅北區學校在職員的教育訓練表現較佳;若依電算中心專任職員人數規模劃分,10人以上的學校發展較佳。最後,本研究針對大專校院在個人資訊管理制度發展中較落後的「監督與審查」和「改善」構面,提出加強建議,降低個資法帶來的衝擊。
Trend Micro in the "Global Threat Trends, 1H 2010" pointed out that when it comes to malware infections by industry sector, the education took the lead during the first half of 2010. Almost 50 percent of all malware infections occurred within schools and colleges which hold a large amount of personal data. Malware not only leaks personal data and damages school reputation, but also affects the sustainable development of school. Therefore, this study investigated the present college personal information management system based on "BS 10012: 2009-personal information management system", and presents recommendations for improvement.The study found that 93.4% of managers working at computer centers, considered college reputation damage the most serious impact in the case of personal information leaking; thus, most of them also considered strengthening internal audit to avoid this from happening. At present, the major developmental progress in college personal information management system is at the "Plan" and "Do" phase, and a lack of control for "Check" and "Act". This study researched whether regional differences and scale of computer center would affect personal information management system among colleges. In terms of regional comparison, there is no significant difference in PDCA phrases, except that the staff information security training performed better in the northern colleges. In terms of performance difference due to number of staff, it was found that colleges with more than 10 employees were better developed. Finally, the study presents recommendations for the colleges with "Check" and "Act" phase in personal information management system.
期刊論文
1.蒲樹盛(20100700)。創新科技環境下的資訊管理重點--雲端資訊安全、個資隱私保護、營運持續服務。品質月刊,46(7),22-25。  延伸查詢new window
2.Rezgui, Yacine、Marks, Adam(2008)。Information security awareness in higher education: An exploratory study。Computers & Security,27(7/8),241-253。  new window
3.郭戎晉(20081200)。日本「個人資料保護管理體系」與「隱私標章」制度之初探。科技法律透析,20(12),2-12。  延伸查詢new window
4.Chang, Y. W.、Ku, C. Y.、Yen, D. C.(2009)。National Information Security Policy and Its Implementation: A Case Study in Taiwan。Telecommunications Policy,33,371-384。  new window
5.Gounaris, A.、Theodoulidis, B.(2003)。Data Base Management Systems (DBMSs): Meeting the Requirements of the EU Data Protection Legislation。International Journal of Information Management,23,185-199。  new window
6.Henderson, S. C.、Snyder, C. A.(1999)。Personal Information Privacy: Implications for MIS managers。Information and Management,36,213-220。  new window
學位論文
1.林家輝(2009)。我國中小學階段學生個人資料保護之研究(碩士論文)。國立臺灣師範大學。  延伸查詢new window
2.胡雯雯(2002)。臺、日、英、德企業教育訓練制度與組織績效關係之比較研究(碩士論文)。國立中央大學。  延伸查詢new window
3.曾淑惠(2002)。以BS7799為基礎評估銀行業的資訊安全環境(碩士論文)。淡江大學。  延伸查詢new window
圖書
1.吳統雄(1990)。電話調查:理論與方法。臺北市:聯經出版事業股份有限公司。  延伸查詢new window
2.OECD(1980)。OECD Guidelines on the Protection of Privacy and Transborder Flows of Personal Data。  new window
3.教育部電子計算機中心(2010)。教育體系資通安全管理規範。教育部電子計算機中心。  延伸查詢new window
其他
1.郭戎晉(2011)。國際個人資料保護制度鳥瞰。  延伸查詢new window
2.黃彥棻(2010)。因應個資法,可以先做的8件事。  延伸查詢new window
3.趨勢科技(2010)。2010上半年檔案威脅趨勢。  延伸查詢new window
4.BSI Group(2009)。BS 10012 Data Protection-Specification for a Personal Information Management System。  new window
 
 
 
 
第一頁 上一頁 下一頁 最後一頁 top
QR Code
QRCODE