Browse > Article

A Study on Certification System for Assurance of Secure Information Security Product Development  

Kang, Soo-Young (Ahnlab, Inc.)
Park, Jong-Hyuk (Department of Computer Science and Engineering, Seoul National University of Technology)
Abstract
According to IT technology has evolved, a lot of information are moving through network. The correct internet users can obtain useful information. But incorrect users expose information and cause various damage for malicious purpose. To solve this problem, various information security products are being developed. For development of secure information security product, the development process should be secure. Also evaluation system is being used about product evaluation and security module for the assurance of secure product. In this paper, we proposed assurance system for secure development of information security product. Therefore this paper proposed more secure product development and assurance scheme.
Keywords
Information Security Product; assurance; Certification System;
Citations & Related Records
연도 인용수 순위
  • Reference
1 Canadian Trusted Computer Product Evaluation criteria(CTCPEC), Version 3.0, Canadian System Security Centre, Communications Security Establishment, Government of Canada, Jan.1993
2 Common Criteria for Information Technology Security Evaluation, Version 3.0, 2005.07 (http://www.commoncriteriaportal.org/public/expert)
3 Common Criteria for Information Technology Security Evaluation, Version 3.1, 2006.09 (http://www.commoncriteriaportal.org/public/expert)
4 Federal Criteria for Information Technology Security(FC), Draft Version 1.0, jointly published by the NIST and NSA, US Government, Jan.1993
5 Information Security Evaluation Criteria(ITSEC), Version 1.2, Office for Official publications of European Commnunities, Jun.1991
6 Trusted Computer System Evaluation Criteria(TCSEC), US DoD5200.28-STD, DEC.1985
7 김광식, 남택용, "정보보호시스템 공통평가기준 기술동향", 전자통신동향분석, 제 17권, 제 5호, 2002년 10월
8 최락만, 송영기, 인소란, "보안 평가 기술 : Common Critetia를 중심으로", 전자통신동향분석, 제 12권, 제 5호, 1997.10
9 한국정보보호진흥원, "정보보호시스템 평가.인증가이드", 2007
10 한국정보보호진흥원, "정보보호시스템 평가.인증지침", 2008.07