DocumentCode
683679
Title
An Analysis of Software Supportable Tasks Related with ISO/IEC 15408
Author
Ning Zhang ; Suhaimi, A.I.H. ; Goto, Yasunori ; Jingde Cheng
Author_Institution
Dept. of Inf. & Comput. Sci., Saitama Univ., Saitama, Japan
fYear
2013
fDate
14-15 Dec. 2013
Firstpage
601
Lastpage
606
Abstract
From the perspective of information security engineering, ISO/IEC 15408, one of ISO/IEC security standards, plays an important role to ensure the whole security of an information/software system. ISO/IEC 15408 is a complex security standard which requires involvement of wide range of participants to perform a quite number of tasks as well as various documents. ISO/IEC 15408 is periodically reviewed and maintained to achieve ongoing improvement so that workflow of tasks and contents/format of documents related with the standard are changed according to changes of the standards. Consequently, it is difficult to do all of the tasks related with ISO/IEC 15408 without any supporting tools. However, there is no study to identify which tasks related with ISO/IEC 15408 can be supported by software tools. Indeed, no one makes clear what the tasks and participants exist. This paper presents the first analysis to identify all software supportable tasks related with ISO/IEC 15408. The paper enumerates all of the participants, documents, and tasks related with ISO/IEC 15408 and shows relationship among them, and identifies all software supportable tasks. The analysis and its results become a basis to construct an information security engineering environment based on ISO/IEC 15408 for ensuring the whole security of an information/software system.
Keywords
IEC standards; ISO standards; document handling; information systems; security of data; ISO-IEC 15408; ISO-IEC security standards; document content; document format; information security engineering environment; information system security; software supportable task analysis; software system security; task workflow; Certification; IEC standards; ISO standards; Security; Software systems; ISO/IEC 15408; information security engineering environment; software supportable task;
fLanguage
English
Publisher
ieee
Conference_Titel
Computational Intelligence and Security (CIS), 2013 9th International Conference on
Conference_Location
Leshan
Print_ISBN
978-1-4799-2548-3
Type
conf
DOI
10.1109/CIS.2013.132
Filename
6746500
Link To Document