On the 10th, the Ministry of Science and ICT released the 2023 Information Protection Disclosure Status Analysis Report to promote companies’ investment in information protection and ensure users’ information accessibility. Previously, the information protection disclosure system was launched in December 2021 to promote safe use of the Internet by users and expansion of companies’ investment in information protection by disclosing and managing the information protection status of companies.
The companies ranked first in terms of investment amount and dedicated manpower by industry were Samsung Electronics in the manufacturing industry, KT in the information and communication industry, and Coupang in the wholesale/small business industry, which is the same as the previous year. The investment amount and dedicated manpower were KRW 243.5 billion and 904.2 people for Samsung Electronics, KRW 103.5 billion and 303.8 people for KT, and KRW 63.9 billion and 167.7 people for Coupang.
No. 1 company in information security investment and dedicated manpower by major industry (unit: people, %). (Data = Ministry of Science and ICT)
The total information security investment of the companies subject to analysis was approximately KRW 1.8526 trillion, an increase of 20.9% compared to the previous year. The average investment by company was approximately 2.6 billion won, an increase of 8.3% compared to the previous year.
Among these, the total information security investment of companies that have implemented disclosure for two consecutive years was approximately KRW 1.6968 trillion, a 14.4% increase from the previous year’s KRW 1.4839 trillion, and the average investment by company was approximately KRW 2.8 billion, which is KRW 200 million higher than the average investment of all publicly disclosed companies. , an increase of 16.7% compared to the previous year’s 2.4 billion won.
The average information security investment by seven major industries is finance (KRW 6.9 billion), information and communication (KRW 5.7 billion), and wholesale and retail (KRW 2.5 billion), and most of the top 10 companies in information security investment are in the information and communication or IT manufacturing industries. Appeared.
The total number of personnel dedicated to information security at the companies subject to analysis was approximately 6891.5, a 17.6% increase from the previous year’s 5862 people, and the average number of personnel dedicated to each company was approximately 9.83, an 8.6% increase compared to 9.05 the previous year. Among these, the total number of personnel dedicated to information security at companies that have implemented disclosure for two consecutive years is approximately 6,240.2, and the average number of personnel dedicated to each company is approximately 10.18. Each increased by 11.3% compared to the previous year.
The average information security workforce in each of the seven major industries is information and communications (23.35 people), finance (17.41 people), and wholesale/retail (9.03 people), and most of the top 10 companies in the information security industry are in the information and communications industry. .
In addition to investment in information security and dedicated manpower, the overall rate of carrying out various information protection activities such as ransomware and hacking response training, awareness-raising activities, obtaining security certification, and signing up for insurance showed a slight increase compared to the previous year in terms of information security-related certification and major activities. Response training increased from 83.80% in 2022 to 84.74% in 2023, awareness raising increased from 92.13% to 92.72% in 2023, Information Security Management System (ISMS) certification increased from 30.56% to 31.24%, and insurance subscription increased from 36.73% to 38.80. increased by %.
However, the Ministry of Science and ICT pointed out that in some industries, such as manufacturing and construction, information protection activities are lower than in other industries, the same as the previous year, so continued interest and effort from the information security chief and management appears to be necessary.
Jeong Chang-rim, Director of Information Security Network Policy at the Ministry of Science and ICT, said, “Despite the fact that it is only the second year since the mandatory disclosure system was implemented, it has been established stably at an early stage, and as information protection disclosure continues, investment expansion appears to be showing results.” He added, “Through this report, companies can “We hope that it will contribute to improving information security capabilities and be used as basic data for establishing information protection policies in various areas,” he said.
Reporter Lee Ji-eun jieunee@etomato.com
This article was finally confirmed and edited by Kim Na-beot, head of the IT Department, in accordance with News Tomato’s reporting standards and code of ethics.
ⓒ Delicious News Tomato, Reproduction without permission – Redistribution prohibited
2023-12-10 03:18:48
#Among #domestic #companies #Samsung #Coupang #ranked #information #security #investment