Title | Information technology — Security techniques — Evaluation criteria for IT security — Part 3: Security assurance components | |
Acronym | ISO/IEC 15408-3 | |
Document Type | Standard | |
Committee | ISO/IEC JTC 1/SC 27 INFORMATION SECURITY, CYBERSECURITY AND PRIVACY PROTECTION | |
Published Year | 2008 | |
Link | https://www.iso.org/standard/46413.html | |
Abstract ISO/IEC 15408-3:2008 defines the assurance requirements of the evaluation criteria. It includes the evaluation assurance levels that define a scale for measuring assurance for component targets of evaluation (TOEs), the composed assurance packages that define a scale for measuring assurance for composed TOEs, the individual assurance components from which the assurance levels and packages are composed, and the criteria for evaluation of protection profiles and security targets. ISO/IEC 15408-3:2008 defines the content and presentation of the assurance requirements in the form of assurance classes, families and components and provides guidance on the organization of new assurance requirements. The assurance components within the assurance families are presented in a hierarchical order. |