PrepAway - Latest Free Exam Questions & Answers

Which of the following ISO standard provides the evaluation criteria that can be used to evaluate security req

Which of the following ISO standard provides the evaluation criteria that can be used to evaluate security requirements of diff erent vendor products?

PrepAway - Latest Free Exam Questions & Answers

A.
15408

B.
27000

C.
TCSEC

D.
ITSEC

Explanation:
A: ISO/IEC 15408 is commonly referred to as the common criteria. It is an internationally recognized standard provided the first truly international product evaluation criteria. It has largely superseded all other criteria, although there continue to be products in general use that were certified under TCSEC, ITSEC, and other criteria.It takes a very similar approach to ITSEC by providing a flexible set of functional and assurance requirements, and like ITSEC, it is not very proscriptive as TCSEC had been. Instead, it is focused on standardizing the general approach to product evaluation and providing mutual recognition
of such evaluations all over the world. Page 697.


Leave a Reply