Evaluation Support
In order to demonstrate that certain risks are
mitigated, organisations often need to have independent assurance
for the products and services that they use. There are many
UK-approved evaluation schemes (such as CAPS, CTAS, CCTM, CC,
ITSEC) that can be employed to provide the independent assurance of
the correct implementation of security functions and identifying
vulnerabilities in IT systems and networks. Normally the selection
of the evaluation methodology used for a product is highly
dependent on the product, customers and environments that the
product will support.
VEGA's approach to evaluation support
VEGA provides its clients with independent
CESG Listed Advisor Scheme (CLAS) affiliated consultants who will
work with them to articulate their product requirements and resolve
their queries through the evaluation frameworks. Our extensive
experience allows us to support our customers in the development of
the appropriate Security Target and associated evaluation
documentation, including the Key Management Plan for cryptographic
products. Production of accurate high quality evaluation
deliverables is a key component in achieving successfully
evaluation certification.
VEGA works with the client (either the end
user or the product developer), the evaluation facility and the
evaluation authority to support the successfully certification of
the products and or systems. Our highly experienced CLAS
consultants are able to apply their knowledge and experience to
your evaluation concerns and issues, delivering best practice
advice for your evaluation scheme requirements. Our consultants are
also experienced in transferring their skills and knowledge to
ensure that organisations develop their own understanding of what
is required to achieve and maintain successful certification.
Contact VEGA for further information about
evaluation support