Modern security product certification best practices - Help Net Security

Modern security product certification best practices - Help Net Security

IT security product manufacturers are required to achieve government mandated, standards-based certifications to get their product in market. One of the most common, aptly called Common Criteria (CC), was introduced more than two decades ago to help standardize the evaluation criteria used to validate a product’s conformance against a variety of functional security requirements.



Its goal is to ensure that a certified product meets the rigorous level of conformance required by the internationally adopted CC standard – thereby providing end users with assurance about the product’s security posture prior to deployment.


Achieving certifications against standards like Common Criteria, or its related cryptographic validation standard FIPS 140-2, are industry and government procurement table stakes. A product’s CC and/or FIPS 140-2 validati ..

Support the originator by clicking the read the rest link below.