Information Assurance Using Common Criteria~A Case Study of The Information System of An Insurance Co.

碩士 === 淡江大學 === 資訊管理學系碩士班 === 94 === In accordance with the demands of the information security standard, on November 15th, 2005, the information security inspection laboratory passed the ISO/IEC17025 authentication, and established the Telecom Technology Center, a commonwealth organization of Taiwa...

Full description

Bibliographic Details
Main Authors: Li-Chen Yang, 楊麗貞
Other Authors: Liang, Te-Chao
Format: Others
Language:zh-TW
Published: 2006
Online Access:http://ndltd.ncl.edu.tw/handle/43230125187591191195
id ndltd-TW-094TKU05396044
record_format oai_dc
spelling ndltd-TW-094TKU053960442015-10-13T18:44:56Z http://ndltd.ncl.edu.tw/handle/43230125187591191195 Information Assurance Using Common Criteria~A Case Study of The Information System of An Insurance Co. 以共同準則落實資訊確保之探討~以S壽險公司之「旅行平安險網路投保系統」為例 Li-Chen Yang 楊麗貞 碩士 淡江大學 資訊管理學系碩士班 94 In accordance with the demands of the information security standard, on November 15th, 2005, the information security inspection laboratory passed the ISO/IEC17025 authentication, and established the Telecom Technology Center, a commonwealth organization of Taiwan R.O.C. The lab use common criteria in the standardized tests. Security products must pass the Common Criteria verification for information assurance has become the trend. But seldom do they mention the information system security guarantee. This thesis performs a case study that establishes the protection profile and security target for a travel insurance information system using Common Criteria. Through the case study we conclude that: 1.As a case study result, a list of the security specifications and recommends for security improvement can be served as suggestions to the business owner, system developers, and network attendants. 2.It is recommend that within the system development life cycles and/or after information system being delivered, the Common Criteria shall be followed as security function of inspection and confirmation. 3.Network transaction systems can employ Common Criteria as a standard to establish the base for a network transaction environment for information assurance. Liang, Te-Chao 梁德昭 2006 學位論文 ; thesis 135 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 淡江大學 === 資訊管理學系碩士班 === 94 === In accordance with the demands of the information security standard, on November 15th, 2005, the information security inspection laboratory passed the ISO/IEC17025 authentication, and established the Telecom Technology Center, a commonwealth organization of Taiwan R.O.C. The lab use common criteria in the standardized tests. Security products must pass the Common Criteria verification for information assurance has become the trend. But seldom do they mention the information system security guarantee. This thesis performs a case study that establishes the protection profile and security target for a travel insurance information system using Common Criteria. Through the case study we conclude that: 1.As a case study result, a list of the security specifications and recommends for security improvement can be served as suggestions to the business owner, system developers, and network attendants. 2.It is recommend that within the system development life cycles and/or after information system being delivered, the Common Criteria shall be followed as security function of inspection and confirmation. 3.Network transaction systems can employ Common Criteria as a standard to establish the base for a network transaction environment for information assurance.
author2 Liang, Te-Chao
author_facet Liang, Te-Chao
Li-Chen Yang
楊麗貞
author Li-Chen Yang
楊麗貞
spellingShingle Li-Chen Yang
楊麗貞
Information Assurance Using Common Criteria~A Case Study of The Information System of An Insurance Co.
author_sort Li-Chen Yang
title Information Assurance Using Common Criteria~A Case Study of The Information System of An Insurance Co.
title_short Information Assurance Using Common Criteria~A Case Study of The Information System of An Insurance Co.
title_full Information Assurance Using Common Criteria~A Case Study of The Information System of An Insurance Co.
title_fullStr Information Assurance Using Common Criteria~A Case Study of The Information System of An Insurance Co.
title_full_unstemmed Information Assurance Using Common Criteria~A Case Study of The Information System of An Insurance Co.
title_sort information assurance using common criteria~a case study of the information system of an insurance co.
publishDate 2006
url http://ndltd.ncl.edu.tw/handle/43230125187591191195
work_keys_str_mv AT lichenyang informationassuranceusingcommoncriteriaacasestudyoftheinformationsystemofaninsuranceco
AT yánglìzhēn informationassuranceusingcommoncriteriaacasestudyoftheinformationsystemofaninsuranceco
AT lichenyang yǐgòngtóngzhǔnzéluòshízīxùnquèbǎozhītàntǎoyǐsshòuxiǎngōngsīzhīlǚxíngpíngānxiǎnwǎnglùtóubǎoxìtǒngwèilì
AT yánglìzhēn yǐgòngtóngzhǔnzéluòshízīxùnquèbǎozhītàntǎoyǐsshòuxiǎngōngsīzhīlǚxíngpíngānxiǎnwǎnglùtóubǎoxìtǒngwèilì
_version_ 1718036657764040704