Countermeasure Characterizations Building Blocks for Designing Secure Information Systems

نویسنده

  • Herman O. Lubbes
چکیده

The Assurance Working Group (AWG) within the IA Program studied a number of issues relating to the design and analysis of secure systems. A principal element of this work was to understand how to select and integrate countermeasures to form secure systems. It was found that one of the biggest failures of the existing design process was that there was a lack of information about what countermeasures did, how they did it, and how they depended on their operational environment. The Common Criteria documentation provided this information, but the documentation was formal and voluminous. A number of factors led the AWG to adapt an abbreviated format and data description referred to as the Countermeasure Characterization (CMC) containing much of the same information required by the Common Criteria. The countermeasure documentation resulting from the application of CMC data description and format not only supports the system designer, but the thought process necessary to produce it gives the countermeasure developer a better understanding of the environment in which the product must operate.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Leveraging attestation techniques for trust establishment in distributed systems

English) As the complexity of current software systems increases, we see a correlative increase in the number of discovered vulnerabilities. These vulnerabilities, once exploited, allow an attacker to surreptitiously install subversive programs, such as malware and spyware, that can eavesdrop, record and distribute a user’s actions, passwords, credit card information, bids in auctions or other ...

متن کامل

Support for modelling and integration of reusable security building blocks in embedded systems

Embedded devices are enablers of Internet of Things with countless applications. These devices store and manipulate sensitive information that is the target of sophisticated attacks. Thus, embedded systems must be protected against security threats. However, designing a secure embedded system is a difficult task, e.g., due to the tightly interdependence of security and resource constraint conce...

متن کامل

Graphic platform for designing and developing practical voice interaction systems

A complete development environment for designing, building and running voice operated services has been created. It offers a system builder a graphic platform with several types of blocks, such as an ASR block, a TTS one, a switch block, a database query block, etc. Even a large dialogue scheme can be realized in very short time simply by placing blocks on the form, specifying their properties ...

متن کامل

An Efficient Secret Sharing-based Storage System for Cloud-based Internet of Things

Internet of things (IoTs) is the newfound information architecture based on the internet that develops interactions between objects and services in a secure and reliable environment. As the availability of many smart devices rises, secure and scalable mass storage systems for aggregate data is required in IoTs applications. In this paper, we propose a new method for storing aggregate data in Io...

متن کامل

Playing with structures at the nanoscale: designing catalysts by manipulation of clusters and nanocrystals as building blocks.

The purpose of this Concept is to highlight some of the most recent and promising methods for the preparation of tailored catalysts by designing and preparing the component building blocks and by assembling them in a controlled fashion. We want to emphasize how rational design and synthesis of catalysts must be coupled to precise catalytic and structural characterization of the systems in an id...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2001