4Related fields and law
- 4.1Network and Database Fundamentals
Learn the layered structure of TCP/IP, IP addresses and subnets, DNS name resolution, the roles of key protocols (HTTP/HTTPS, SMTP, DHCP), and the basics of database transaction management and access control—all to the depth an SG candidate needs.
- 4.2System Audit and Service Management
Learn the flow of system audit, in which an independent third party evaluates information systems, and its relationship to internal control; ITIL and the SLA (service level agreement) that underpin the continuous operation of IT services; availability management, which keeps systems running, and capacity management, which prepares for future load; and how audit evidence (logs) is handled as the basis for an audit.
- 4.3Security-related Laws
Learn the Act on the Protection of Personal Information, which governs proper handling of personal data; the Unauthorized Computer Access Prohibition Act; the Act on Countermeasures for Information Distribution Platforms (formerly the Provider Liability Limitation Act), which addresses rights-infringing information online; the Basic Act on Cybersecurity, setting national cybersecurity policy; the Unfair Competition Prevention Act, protecting trade secrets; the Electronic Signature Act, preventing impersonation; and the Penal Code offense of obstructing business by damaging a computer.
- 4.4Management and Security Governance
Learn information security governance led by management, corporate governance that disciplines the enterprise as a whole and the internal control that forms part of it, the Cybersecurity Management Guidelines that push executives toward security investment, and how supplier management fits within security governance.

