Evaluation Support

In order to demonstrate that certain risks are mitigated, organisations often need to have independent assurance for the products and services that they use. There are many UK-approved evaluation schemes (such as CAPS, CTAS, CCTM, CC, ITSEC) that can be employed to provide the independent assurance of the correct implementation of security functions and identifying vulnerabilities in IT systems and networks. Normally the selection of the evaluation methodology used for a product is highly dependent on the product, customers and environments that the product will support.

 

VEGA's approach to evaluation support

VEGA provides its clients with independent CESG Listed Advisor Scheme (CLAS) affiliated consultants who will work with them to articulate their product requirements and resolve their queries through the evaluation frameworks. Our extensive experience allows us to support our customers in the development of the appropriate Security Target and associated evaluation documentation, including the Key Management Plan for cryptographic products. Production of accurate high quality evaluation deliverables is a key component in achieving successfully evaluation certification.

 

VEGA works with the client (either the end user or the product developer), the evaluation facility and the evaluation authority to support the successfully certification of the products and or systems. Our highly experienced CLAS consultants are able to apply their knowledge and experience to your evaluation concerns and issues, delivering best practice advice for your evaluation scheme requirements. Our consultants are also experienced in transferring their skills and knowledge to ensure that organisations develop their own understanding of what is required to achieve and maintain successful certification.

 

Contact VEGA for further information about evaluation support