SR EN ISO/IEC 15408-1:2024
Securitatea informațiilor, securitatea cibernetică și protecția vieții private. Criterii de evaluare a securității IT. Partea 1: Introducere și model general
This document establishes the general concepts and principles of IT security evaluation and specifies the general model of evaluation given by various parts of the standard which in its entirety is meant to be used as the basis for evaluation of security properties of IT products. This document provides an overview of all parts of the ISO/IEC 15408 series. It describes the various parts of the ISO/IEC 15408 series; defines the terms and abbreviations to be used in all parts of the standard; establishes the core concept of a Target of Evaluation (TOE); describes the evaluation context and describes the audience to which the evaluation criteria is addressed. An introduction to the basic security concepts necessary for evaluation of IT products is given. This document introduces: — the key concepts of Protection Profiles (PP), PP-Modules, PP-Configurations, packages, Security Targets (ST), and conformance types; — a description of the organization of security components throughout the model; — the various operations by which the functional and assurance components given
Status :
In vigoare
Data aprobării : 29.02.2024
Număr de pagini : 158
ICS : 35.030 Securitatea IT
Comitet tehnic : 208 - Tehnici de securitate în informatică
- Inlocuieste SR EN ISO/IEC 15408-1:2020
EN