loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
First International Conference on Availability, Reliability and Security (ARES'06)
A Comparison of the Common Criteria with Proposals of Information Systems Security Requirements
Vienna, Austria
April 20-April 22
ISBN: 0-7695-2567-9
Daniel Mellado, Quality, Auditing and Security Institute, Madrid, Spain
Eduardo Fernandez-Medina, UCLM-Soluziona Research and Development Institute, Spain
Mario Piattini, UCLM-Soluziona Research and Development Institute, Spain
Nowadays, security solutions are focused mainly on providing security defences, instead of solving one of the main reasons for security problems that refers to an appropriate Information Systems (IS) design. Fortunately there are several standards, like the Common Criteria, which help to deal with the security requirements along all the IS development cycle. In this paper a comparative analysis of eight different relevant technical proposals, which place great importance on the establishing of security requirements in the development of IS, is carried out. And they provide some significant contributions in aspects related to security. Nevertheless, they only satisfy partly the necessary criteria for the establishment of security requirements, with guarantees and integration in the development of IS. Thus we conclude that they are not specific enough for dealing with security requirements in the first stages of IS development in a systematic and intuitive way.
Citation:
Daniel Mellado, Eduardo Fernandez-Medina, Mario Piattini, "A Comparison of the Common Criteria with Proposals of Information Systems Security Requirements," ares, pp.654-661, First International Conference on Availability, Reliability and Security (ARES'06), 2006
Usage of this product signifies your acceptance of the Terms of Use.