Question: When evaluating a product for use within an environment that handles very sensitive corporate information it is advisable to have it tested by a third
When evaluating a product for use within an environment that handles very sensitive corporate information it is advisable to have it tested by a third party. If testing is done using ISO Common Criteria there are several critical aspects of the test results that should be taken into consideration, one of which is the Security Target. Which of the following best defines a Security Target?
Question options:
An implementationindependent set of security requirements for a category of productssystems that meet specific consumer security needs
A set of functional requirements used for evaluating assurance capabilities of a productsystem
A set of assurance capabilities used as the basis for evaluating a specific productsystem
A set of security requirements and specifications to be used as the basis for evaluation of an identified productsystem
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
