La version électronique de cette Norme internationale peut être téléchargée à partir du site Web du Groupe de travail ISO/CEI sur les technologies de l'information (ITTF)
Résumé
This document provides packages of security assurance and security functional requirements that have been identified as useful in support of common usage by stakeholders.
EXAMPLE Examples of provided packages include the evaluation assurance levels (EAL) and the composed assurance packages (CAPs).
This document presents:
— evaluation assurance level (EAL) family of packages that specify pre-defined sets of security assurance components that may be referenced in PPs and STs and which specify appropriate security assurances to be provided during an evaluation of a target of evaluation (TOE);
— composition assurance (CAP) family of packages that specify sets of security assurance components used for specifying appropriate security assurances to be provided during an evaluation of composed TOEs;
— composite product (COMP) package that specifies a set of security assurance components used for specifying appropriate security assurances to be provided during an evaluation of a composite product TOEs;
— protection profile assurance (PPA) family of packages that specify sets of security assurance components used for specifying appropriate security assurances to be provided during a protection profile evaluation;
— security target assurance (STA) family of packages that specify sets of security assurance components used for specifying appropriate security assurances to be provided during a security target evaluation.
The users of this document can include consumers, developers, and evaluators of secure IT products.
Informations générales
-
État actuel: PubliéeDate de publication: 2022-08Stade: Norme internationale à réviser [90.92]
-
Edition: 1
-
Comité technique :ISO/IEC JTC 1/SC 27ICS :35.030
- RSS mises à jour
Prochaine édition en cours d'élaboration
ISO/IEC DIS 15408-5
Sécurité de l'information, cybersécurité et protection de la vie privée — Critères d'évaluation pour la sécurité des technologies de l'information
Partie 5: Paquets prédéfinis d'exigences de sécurité
ISO/IEC DIS 15408-5
Cycle de vie
-
Actuellement
PubliéeISO/IEC 15408-5:2022
Les normes ISO sont réexaminées tous les cinq ans
Stade: 90.92 (Sera révisée) -
Sera remplacée par
ProjetISO/IEC DIS 15408-5