题名 |
植基於個資法以建置個資保護評鑑機制之研究-以學術單位為例 |
并列篇名 |
A Study on Construction of Personal Information Protection Mechanism with the Personal Information Protection Act-a Case Study of academic institution |
作者 |
鄭香貝(Hsiang-PeiCheng);陳振楠(Jen-Nan Chen);伍台國(Tai-Kuo Woo);陳惟凡(Wei-Fan Chen) |
关键词 |
個人資料保護法 ; ISO/IEC 27010 ; ISO/IEC 27001: 2005 ; Personal Data Protection Act ; ISO/IEC 27010 ; ISO / IEC 27001:2005 |
期刊名称 |
電腦稽核 |
卷期/出版年月 |
33期(2016 / 01 / 30) |
页次 |
37 - 51 |
内容语文 |
繁體中文 |
中文摘要 |
隨著資訊科技的進步,民眾藉由電腦網路與公務機關或非公務機關之事務往來日漸普及,在享受便利的同時,必須承擔個資外洩及不當利用的風險。這些帶有個人資料的服務,一旦安全保護措施不夠完善,容易造成個人隱私資料受到侵害。本研究將遵循個人資料保護法規範,並透過ISO/IEC 27010「組織與部門通訊資訊安全管理」及ISO/IEC 27001: 2005「資訊安全管理系統」建置個人資料隱私風險評鑑機制,以提供學術單位於個人資料保護參考。 |
英文摘要 |
With the advances in information technology. General public exchanges, through Internet Contact the growing popularity of the affairs of public agencies and non-government jobs. Enjoy these convenient at the same time, must assume a capital leakage and improper use of the risk. These services with personal information, as soon as the security control measures is not complete, likely to cause personal privacy information being infringed. In this study, follow the specifications of the new version of the Personal Data Protection Act and through the ISO/IEC 27010 " Information technology-Security techniques-Information security management for inter-sector and inter-organizational communications" and ISO/IEC 27001: 2005 " Information Security Management System" established the privacy of personal information and risk assessment mechanism, to provide the reference of the academic institutions in the personal data protection. |
主题分类 |
基礎與應用科學 >
資訊科學 |
参考文献 |
|