{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,20]],"date-time":"2026-02-20T18:44:36Z","timestamp":1771613076265,"version":"3.50.1"},"publisher-location":"Berlin, Heidelberg","reference-count":56,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783540340775","type":"print"},{"value":"9783540340782","type":"electronic"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2006]]},"DOI":"10.1007\/11751632_70","type":"book-chapter","created":{"date-parts":[[2006,5,11]],"date-time":"2006-05-11T15:00:57Z","timestamp":1147359657000},"page":"639-648","source":"Crossref","is-referenced-by-count":2,"title":["Security Engineering Methodology Based on Problem Solving Theory"],"prefix":"10.1007","author":[{"given":"Sangkyun","family":"Kim","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hong Joo","family":"Lee","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"70_CR1","doi-asserted-by":"crossref","unstructured":"Jonassen, D.H.: Using Cognitive Tools to Represent Problems. Journal of Research on Technology in Education\u00a035(3) (2003)","DOI":"10.1080\/15391523.2003.10782391"},{"key":"70_CR2","unstructured":"Simon, H.A.: Identifying Basic Abilities Underlying Intelligent Performance on Complex Tasks. In: Resnick, L.B. (ed.) The Nature of Intelligence. LEA (1976)"},{"key":"70_CR3","volume-title":"Human Abilities, An Information Processing Approach","author":"M.T.H. Chi","year":"1985","unstructured":"Chi, M.T.H., Glaser, R.: Problem Solving Ability. In: Sternberg, R.J. (ed.) Human Abilities, An Information Processing Approach, W.H. Freeman & Company, New York (1985)"},{"key":"70_CR4","doi-asserted-by":"crossref","unstructured":"Jonassen, D.H.: Instructional Design Models for Well-structured and Ill-structured Problem Solving Learning Outcomes. Educational Technology, Research and Development\u00a045(1) (1997)","DOI":"10.1007\/BF02299613"},{"key":"70_CR5","unstructured":"Simon, H.A.: Information-Processing Theory of Human Problem Solving. In: Esters, W.K. (eds.): Handbook of Learning and Cognitive Process. LEA (1978)"},{"key":"70_CR6","unstructured":"Sinnott, J.D.: A Model for Solution of Ill-Structured Problems: Implications for Everyday and Abstract Problem Solving. In: Sinnott, J.D. (ed.) Everyday Problem Solving: Theory and Application. Praeger Publishers (1989)"},{"key":"70_CR7","unstructured":"Voss, J.F., et al.: From Representation to Decision: An Analysis of Problem Solving in International Relations. In: Sternberg, R.J. (ed.) Complex Problem Solving. LEA (1991)"},{"key":"70_CR8","doi-asserted-by":"crossref","unstructured":"Voss, J.F.: Learning and Transfer in Subject-matter Learning: A Problem Solving Model. International Journal of Educational Research\u00a011 (1988)","DOI":"10.1016\/0883-0355(87)90005-X"},{"key":"70_CR9","doi-asserted-by":"crossref","unstructured":"Kitchner, K.S.: Cognition, Metacognition, and Epistemic Cognition: A Three-level Model of Cognitive Processing. Human Development\u00a026 (1983)","DOI":"10.1159\/000272885"},{"key":"70_CR10","unstructured":"Spiro, R.J., et al.: Knowledge Acquisition for Application: Cognitive Flexibility and Transfer in Complex Content Domains. In: Britton, B.C. (ed.) Executive Control Processes. LEA (1987)"},{"key":"70_CR11","unstructured":"Spiro, R.J., et al.: Cognitive Flexibility Theory: Advanced Knowledge Acquisition in Ill-Structured Domains. Center for the Study of Reading, University of Illinois (1988)"},{"key":"70_CR12","unstructured":"Choi, S.: A Study on the Methodology to Establish the Security Systems for E-business, Mater Thesis. Yonsei University (2000)"},{"key":"70_CR13","unstructured":"SEI: A Systems Engineering Capability Maturity Model, Version 2.0. Software Engineering Institute, Carnegie Mellon University (1999)"},{"key":"70_CR14","unstructured":"NIST: An Introduction to Computer Security: The NIST Handbook. NIST (1995)"},{"key":"70_CR15","unstructured":"Kim, S., et al.: An Analytic Perspective of ISO17799 ISMS. In: Fifth International Conference on Operations and Quantitative Management (2004)"},{"key":"70_CR16","unstructured":"ISO13335-1: Information Technology - Guidelines for the Management of IT Security - Part 1: Concepts and Models for IT Security, No. ISO\/IEC TR 13335-1:1996(E). International Organization for Standardization (1996)"},{"key":"70_CR17","unstructured":"Henze, D.: IT Baseline Protection Manual. BSI (2000)"},{"key":"70_CR18","doi-asserted-by":"crossref","unstructured":"Rex, R.K., Charles, S.A., Houston, C.H.: Risk Analysis for Information Technology. Journal of Management Information Systems\u00a08(1) (1991)","DOI":"10.1080\/07421222.1991.11517914"},{"key":"70_CR19","volume-title":"EDP Audting: Conceptual Foundations and Practice","author":"W. Ron","year":"1988","unstructured":"Ron, W.: EDP Audting: Conceptual Foundations and Practice. McGraw-Hill, New York (1988)"},{"key":"70_CR20","doi-asserted-by":"crossref","unstructured":"Tudor, J.K.: Information Security Architecture: An Integrated Approach to Security in the Organization. Auerbach (2000)","DOI":"10.1201\/9781420031034"},{"key":"70_CR21","unstructured":"NIST: Security Self-Assessment Guide for Information Technology Systems, NIST Special Publication 800-26 NIST (2001)"},{"key":"70_CR22","doi-asserted-by":"crossref","unstructured":"Gilbert, I.E.: Guide for Selecting Automated Risk Analysis Tools (SP 500-174). NIST (1989)","DOI":"10.6028\/NIST.SP.500-174"},{"key":"70_CR23","doi-asserted-by":"crossref","unstructured":"Polk, W.T., Bassham, L.E.: A Guide to the Selection of Anti-Virus Tools and Techniques(SP 800-5), NIST Special Publication. NIST (1992)","DOI":"10.6028\/NIST.SP.800-5"},{"key":"70_CR24","unstructured":"Lynch, G., Stenmark, I.: A Methodology for Rating Security Vendors. Gartner (1996)"},{"key":"70_CR25","unstructured":"Schweitzer, J.A.: Protecting Information in the Electronic Workplace: A Guide for Managers. Reston Publishing Company (1983)"},{"key":"70_CR26","volume-title":"Management\u2019s Roles in Computer Security, in Computer Security Handbook","author":"A.E. Hutt","year":"1988","unstructured":"Hutt, A.E.: Management\u2019s Roles in Computer Security, in Computer Security Handbook. Macmillan Publishing Company, Basingstoke (1988)"},{"key":"70_CR27","unstructured":"Fites, P.E., et al.: Controls and Security of Computer Information Systems. Computer Science Press (1989)"},{"key":"70_CR28","unstructured":"Vallabhaneni, S.R.: CISSP Examination Textbooks. SRV Professional Publications (2000)"},{"key":"70_CR29","volume-title":"The CISSP Prep Guide: Mastering the Ten Domains of Computer Security","author":"R.L. Krutz","year":"2001","unstructured":"Krutz, R.L., Vines, R.D.: The CISSP Prep Guide: Mastering the Ten Domains of Computer Security. John Wiley & Sons, Chichester (2001)"},{"key":"70_CR30","unstructured":"Kim, S.: Security Consultant Training Handbook. HIT (2002)"},{"key":"70_CR31","doi-asserted-by":"crossref","unstructured":"Firth, R., et al.: An Approach for Selecting and Specifying Tools for Information Survivability. Software Engineering Institute, Carnegie Mellon University (1998)","DOI":"10.21236\/ADA350658"},{"key":"70_CR32","unstructured":"Kavanaugh, K.: Security Services: Focusing on User Needs. Gartner (2001)"},{"key":"70_CR33","unstructured":"Beall, S., Hodges, R.: Protection & Security: Software Comparison Columns. Gartner (2002)"},{"key":"70_CR34","unstructured":"Geer, D.E.: Making Choices to Show ROI. Secure Business Quarterly\u00a01(2) (2001)"},{"key":"70_CR35","unstructured":"Scott, D.: Security Investment Justification and Success Factors. Gartner (1998)"},{"key":"70_CR36","unstructured":"Blakley, B.: Returns on Security Investment: An Imprecise but Necessary Calculation. Secure Business Quarterly\u00a01(2) (2001)"},{"key":"70_CR37","unstructured":"Malik, W.: A Security Funding Strategy. Gartner (2001)"},{"key":"70_CR38","unstructured":"Power, R.: CSI\/FBI Computer Crime and Security Survey. Computer Security Issues & Trends\u00a08(1) (2002)"},{"key":"70_CR39","volume-title":"Disaster Recovery Planning","author":"R.J. Bates","year":"1991","unstructured":"Bates, R.J.: Disaster Recovery Planning. McGraw-Hill, New York (1991)"},{"key":"70_CR40","unstructured":"Witty, R., et al.: The Price of Information Security, Strategic Analysis Report. Gartner (2001)"},{"key":"70_CR41","volume-title":"CISSP All-in-One Exam Guide","author":"S. Harris","year":"2003","unstructured":"Harris, S.: CISSP All-in-One Exam Guide, 2nd edn. McGraw-Hill, New York (2003)","edition":"2"},{"key":"70_CR42","unstructured":"Roper, C.A.: Risk Management for Security Professionals. Butterworth Heinemann (1999)"},{"key":"70_CR43","unstructured":"Leem, C.S., et al.: Introduction to An Integrated Methodology for Development and Implementation of Enterprise Information Systems. In: Proceeding of INFORMS 1999 (1999)"},{"key":"70_CR44","unstructured":"Leem, C.S.: A Research on a Consulting Methodology of Enterprise Information Systems. ITR (1999)"},{"key":"70_CR45","unstructured":"Choi, J.: A Framework of the Integrated Methodology for Industrial Information Systems, Mater Thesis. Yonsei University (1998)"},{"key":"70_CR46","doi-asserted-by":"crossref","unstructured":"Fisher, M.A., et al.: IT Support of Single Project, Multi-project and Industry-wide Integration. Computers in Industry\u00a035 (1998)","DOI":"10.1016\/S0166-3615(97)00082-1"},{"key":"70_CR47","doi-asserted-by":"crossref","unstructured":"Monheit, M., Tsafrir, A.: Information Systems Architecture: a Consulting Methodology. In: Proceeding of the 1990 IEEE International Conference on Computer Systems and Software Engineering (1990)","DOI":"10.1109\/CMPEUR.1990.113686"},{"key":"70_CR48","unstructured":"Kim, S., Choi, S., Leem, C.S.: An Integrated Framework for Secure E-business Models and Their Implementation. In: Proceeding of INFORMS 1999 (1999)"},{"key":"70_CR49","unstructured":"Jeon, D.: A Study on Development of TO-BE Enterprise Model for Information Strategy Planning, Master Thesis. Yonsei University (2000)"},{"key":"70_CR50","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"597","DOI":"10.1007\/978-3-540-24707-4_71","volume-title":"Computational Science and Its Applications \u2013 ICCSA 2004","author":"S. Kim","year":"2004","unstructured":"Kim, S., Leem, C.S.: An information engineering methodology for the security strategy planning. In: Lagan\u00e1, A., Gavrilova, M.L., Kumar, V., Mun, Y., Tan, C.J.K., Gervasi, O. (eds.) ICCSA 2004. LNCS, vol.\u00a03043, pp. 597\u2013607. Springer, Heidelberg (2004)"},{"key":"70_CR51","doi-asserted-by":"crossref","unstructured":"Leem, C.S., Oh, B.: Evaluation Information Strategic Planning: An Evaluation System and Its Application. Journal of Systems Integration\u00a010(3) (2002)","DOI":"10.1023\/A:1011249810556"},{"key":"70_CR52","unstructured":"Porter, M.E.: How Competitive Forces Shape Strategy. Harvard Business Review\u00a057(2) (1979)"},{"key":"70_CR53","unstructured":"Scott, D.: Best Practices in Business Continuity Planning. Symposium\/ITxpo 2002 (2002)"},{"key":"70_CR54","unstructured":"CSE: Guide to Risk Assessment and Safeguard Selection for Information Technology Systems. CSE (1996)"},{"key":"70_CR55","unstructured":"ISO9126-1: Software Engineering - Product Quality - Part 1: Quality Model, No. ISO\/IEC 9126-1:2001. International Organization for Standardization (2001)"},{"key":"70_CR56","doi-asserted-by":"crossref","unstructured":"Leem, C.S., Kim, S.: Introduction to an Integrated Methodology for Development and Implementation of Enterprise Information Systems. Journal of System and Softwares\u00a060 (2002)","DOI":"10.1016\/S0164-1212(01)00096-6"}],"container-title":["Lecture Notes in Computer Science","Computational Science and Its Applications - ICCSA 2006"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/11751632_70.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,2,4]],"date-time":"2024-02-04T09:57:28Z","timestamp":1707040648000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/11751632_70"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2006]]},"ISBN":["9783540340775","9783540340782"],"references-count":56,"URL":"https:\/\/doi.org\/10.1007\/11751632_70","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2006]]}}}