Question: When evaluating a product for use within an environment that handles very sensitive corporate information it is advisable to have it tested by a third

When evaluating a product for use within an environment that handles very sensitive corporate information it is advisable to have it tested by a third party. If testing is done using ISO 15408(Common Criteria), there are several critical aspects of the test results that should be taken into consideration, one of which is the Security Target. Which of the following best defines a Security Target?
Question 11 options:
An implementation-independent set of security requirements for a category of products/systems that meet specific consumer security needs
A set of functional requirements used for evaluating assurance capabilities of a product/system
A set of assurance capabilities used as the basis for evaluating a specific product/system
A set of security requirements and specifications to be used as the basis for evaluation of an identified product/system

Step by Step Solution

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Students Have Also Explored These Related Databases Questions!