27.09.2015 Views

MICIE Workshop

Risk Modelling and Simulation for Critical Information Infrastructure ...

Risk Modelling and Simulation for Critical Information Infrastructure ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Certified System<br />

Benefits of the ISO 15408 approach<br />

The standardised approach allows:<br />

Choosing security objectives and assumption to cover identified treats.<br />

Designing Security Functional Requirements to cover objectives.<br />

Certifying that the SMGW is secure if operated in the conditions it has been<br />

designed for.<br />

Providing confidence to manufactures that the device is secure enough.<br />

Fostering operators’ trust in the security of a given device.<br />

Security<br />

Requirements<br />

<br />

<br />

<br />

<br />

<br />

<br />

Functional<br />

Requirements<br />

Agenda<br />

Introduction<br />

Info sharing<br />

in CIP<br />

Secure Sharing<br />

POC and testing<br />

choose the right<br />

device for his security<br />

ISO 15408<br />

thanks to<br />

EAL 1<br />

EAL 7<br />

EAL 4<br />

VU<br />

build the right<br />

secured device<br />

Assurance<br />

Confidence<br />

CI Operator<br />

Manufacturer<br />

01/03/2011<br />

10 / 12

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!