A security requirement management database based on ISO/IEC 15408

  • Authors:
  • Shoichi Morimoto;Daisuke Horie;Jingde Cheng

  • Affiliations:
  • Advanced Institute of Industrial Technology, Tokyo, Japan;Department of Information and Computer Sciences, Saitama University, Saitama, Japan;Department of Information and Computer Sciences, Saitama University, Saitama, Japan

  • Venue:
  • ICCSA'06 Proceedings of the 2006 international conference on Computational Science and Its Applications - Volume Part III
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

With the scale-spreading and diversification of information systems, security requirements for the systems are being more and more complicated. It is desirable to apply database technologies to information security engineering in order to manage the security requirements in design and development of the systems. This paper proposes a security requirement management database based on the international standard ISO/IEC 15408 that defines security functional requirements which should be satisfied by various information systems. The database can aid design and development of information systems that require high security such that it enables to suitably refer to required data of security requirements.