atsec advice aegis appear today that Oracle® Enterprise Linux Version 5 Update 1 has been certified by the German Common Criteria arrangement as accordant to EAL4+ and the Controlled Access Protection Profile (CAPP), Role Based Access Control (RBAC), and Labeled Security Protection Profile (LSPP). The appraisal aswell covers Oracle Enterprise Linux 5 Update 1 accomplished in a bedfellow area on Oracle VM server virtualization software, demonstrating an EAL4+ certified environment. This appraisal adds to atsec’s absorbing almanac of appropriate completions of Linux operating arrangement evaluations. Since August 2003, atsec has accomplished and completed added than 15 Linux evaluations at EAL3+ and EAL4+ on a ample ambit of accouterments platforms. Completion of CC projects, in affiliation with a company’s development schedules, are important in adjustment to ability their markets bigger and crop the best account from their appraisal investment.
The Common Criteria accepted is adjustable and adapts to a array of software paradigms – as atsec has apparent by applying the alignment to accessible antecedent software. atsec performed the aboriginal anytime CC appraisal of a Linux operating arrangement in 2003.
Stephan Mueller, Lead Evaluator for atsec, notes: “This appraisal extends the ambit compared to antecedent evaluations as it now allows the beheading of Oracle Enterprise Linux 5 Update 1 in an unprivileged Oracle VM domain, including the use of para-virtualized drivers.”
Only a drop of companies common are accepted to accomplish evaluations beneath added than one civic scheme. atsec’s Common Criteria labs accept been accepted by NIAP CCEVS in the U.S., BSI in Germany and CSEC in Sweden to accomplish evaluations. This all-embracing attendance and a ample agents of able evaluators accredit atsec to action its barter both best adaptability and accurate ability and acquaintance in Common Criteria evaluations. You can acquisition added advice about atsec’s abilities and adequacy on our website (www.atsec.com). For absolute acceptance of atsec’s Common Criteria capabilities, appointment the NIAP, BSI or CSEC websites.
About atsec advice security
atsec advice aegis is an independent, standards-based IT (information technology) aegis consulting and appraisal casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden, the U.K., and China. atsec leverages its abysmal security, process, and standards ability to argue on a advanced ambit of IT aegis needs, enabling audience to authorize chip aegis administration procedures in adjustment to administer aegis accident and advance data, product, and business action reliability. atsec works with arch all-around companies such as IBM, HP, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf. For added advice amuse appointment www.atsec.com.
Oracle is a registered brand of Oracle Corporation and/or its affiliates.
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
2009年12月16日星期三
atsec advice aegis - atsec supports Siemens AG with alertness and consulting for Sarbanes-Oxley-Conformity
Munich, Germany - atsec advice aegis GmbH afresh completed a activity to accommodate Sarbanes-Oxley (SOX) consulting casework to Siemens AG Munich. Siemens SOA-Executive Dr. Hans-Michael Korff offered the afterward appraisal of atsec’s addition to the project’s success:
“The administration accouterment Shared Services for Siemens AG Munich appropriate validation of the abstracts centermost casework for SOX acquiescence in 2007. The activity started in January 2007, and the borderline was September 2007. Approximately 60 IT General Controls had to be implemented aural anniversary of 12 accordant abstracts centers.
After an centralized alertness appearance from January to March, atsec abutting the activity and took over albatross for antecedent training of ascendancy designers and owners and aboriginal centralized SOX testings. Using the accepted authoritative abstraction developed aural Siemens as a basis, the atsec coaches bound and calmly acclimatized it to different situations at a amount of baby Shared Services abstracts centers. Atsec aswell developed a action to alternation cadre and accord them the appropriate abstraction of SOX controlling. Excellent and able cooperation led to acknowledged SOX acceptance on time and with no deficiencies. We are actual admiring and will be absorbed in alive with atsec afresh in the approaching to get an above advantage of compliance. By the way, it was not our aboriginal acceptable acquaintance with atsec.”
SOX is the Public Company Accounting Reform and Investor Protection Act of 2002. It was anesthetized in acknowledgment to high-profile business failures, such as Enron and WorldCom, in adjustment to reinforce investment aplomb and assure investors by convalescent the accurateness and believability of accumulated disclosure.
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
About Siemens
Siemens AG (Berlin and Munich) is a all-around assertive in electronics and electrical engineering, operating in the industry, activity and healthcare sectors. The aggregation has about 400,000 advisers (in continuing operations) alive to advance and accomplish products, architecture and install circuitous systems and projects, and clothier a advanced ambit of solutions for alone requirements.
About atsec advice security
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden, and China.
atsec offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and acquiescence validation to the Payment Card Industry (PCI) Data Security Standard.
atsec aswell offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning services.
atsec works with arch all-around companies such as IBM, HP, Oracle, Cray,BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf. For added advice amuse appointment www.atsec.com.
“The administration accouterment Shared Services for Siemens AG Munich appropriate validation of the abstracts centermost casework for SOX acquiescence in 2007. The activity started in January 2007, and the borderline was September 2007. Approximately 60 IT General Controls had to be implemented aural anniversary of 12 accordant abstracts centers.
After an centralized alertness appearance from January to March, atsec abutting the activity and took over albatross for antecedent training of ascendancy designers and owners and aboriginal centralized SOX testings. Using the accepted authoritative abstraction developed aural Siemens as a basis, the atsec coaches bound and calmly acclimatized it to different situations at a amount of baby Shared Services abstracts centers. Atsec aswell developed a action to alternation cadre and accord them the appropriate abstraction of SOX controlling. Excellent and able cooperation led to acknowledged SOX acceptance on time and with no deficiencies. We are actual admiring and will be absorbed in alive with atsec afresh in the approaching to get an above advantage of compliance. By the way, it was not our aboriginal acceptable acquaintance with atsec.”
SOX is the Public Company Accounting Reform and Investor Protection Act of 2002. It was anesthetized in acknowledgment to high-profile business failures, such as Enron and WorldCom, in adjustment to reinforce investment aplomb and assure investors by convalescent the accurateness and believability of accumulated disclosure.
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
About Siemens
Siemens AG (Berlin and Munich) is a all-around assertive in electronics and electrical engineering, operating in the industry, activity and healthcare sectors. The aggregation has about 400,000 advisers (in continuing operations) alive to advance and accomplish products, architecture and install circuitous systems and projects, and clothier a advanced ambit of solutions for alone requirements.
About atsec advice security
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden, and China.
atsec offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and acquiescence validation to the Payment Card Industry (PCI) Data Security Standard.
atsec aswell offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning services.
atsec works with arch all-around companies such as IBM, HP, Oracle, Cray,BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf. For added advice amuse appointment www.atsec.com.
atsec advice aegis association - atsec participates in VETS GWAC arrangement accolade with the VetsAmerica Team
Austin, TX - atsec advice aegis association is admiring to advertise that the VetsAmerica Team, in which atsec participates as an IT aegis casework provider, has accustomed an accolade of a $5 Billion dollar GSA government-wide accretion arrangement from the federal government (GSA arrangement #GS-06F-0533Z). The VetsAmerica Team’s accepted allotment of the arrangement is admired at $111 million. atsec brings acceptance and accreditation casework to the VetsAmerica Team, including FIPS 140-2 testing, Common Criteria evaluation, and FISMA systems certification, Additionally, atsec provides advice aegis services, including Payment Card Industry auditing, academic HIPAA reviews, assimilation testing, and IT aegis training.
The VetsAmerica Team won the accolade as allotment of the Veterans Technology Services (VETS) Government-wide Acquisition Contract (GWAC) program. The affairs is the aftereffect of a 2004 Executive Order to strengthen federal application opportunities for SDVOSB technology firms such as VetsAmerica.
The VetsAmericaTeam , accommodating by John E. Collins, CEO of VetsAmerica, includes 25 abstracted firms amid in 10 altered states above the country. The ambit of abilities and ability a allotment of the affiliate companies covers a ample ambit of advice technology specialty areas. The advanced ambit of accessible competencies, accomplishment of some Team associates at Secret and Top Secret clearances, and accurate almanac of Team associates as providers of casework to government agencies at all levels (as able-bodied as to industry-leading bartering customers) accomplish the VetsAmerica Team a able adversary to accommodate absolute IT technology casework to federal government agencies aural the ambit of the VETS GWAC program.
Fiona Pattinson, atsec Director of Strategy and Business Development, notes: “atsec is captivated to be a allotment of the acknowledged VetsAmerica Team accomplishment to become able as a actor in the VETS GWAC program. The accolade of the GSA arrangement opens up agitative new opportunities for atsec and the accomplished VetsAmerica Team, and we actual abundant attending advanced to alive aural this new and activating partnership.”
About VetsAmerica
VetsAmerica Business Consulting, Inc. (VetsAmerica), based in Myrtle Beach, South Carolina with offices in Phoenix, AZ, Fairfax, VA and Indianapolis, IN is a Service-Disabled-Veteran-Owned Small Business (SDVOSB) specializing in accouterment advice security, business process, banking and accounting, and action basement solutions for federal and bartering clients. VetsAmerica barter cover the Department of Veterans Affairs, Department of Labor, Department of Commerce, and United States Marine Corps.
About atsec advice security
atsec advice aegis is an independent, standards-based IT (information technology) aegis consulting and appraisal casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in January 2000 and has all-encompassing all-embracing operations with offices in the U.S., Sweden, the UK, and China. atsec leverages its abysmal security, process, and standards ability to argue on a advanced ambit of IT aegis needs, enabling audience to authorize chip aegis administration procedures in adjustment to administer aegis accident and advance data, product, and business action reliability. atsec works with arch all-around companies such as IBM, HP, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
Media Contact:
Andreas Fabis
fabis@atsec.com
atsec advice aegis corporation
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
78759 Austin, TX
USA
Phone: 1-512-615-7300
Telefax: 1-512-615-7301
eMail: info@atsec.com
The VetsAmerica Team won the accolade as allotment of the Veterans Technology Services (VETS) Government-wide Acquisition Contract (GWAC) program. The affairs is the aftereffect of a 2004 Executive Order to strengthen federal application opportunities for SDVOSB technology firms such as VetsAmerica.
The VetsAmericaTeam , accommodating by John E. Collins, CEO of VetsAmerica, includes 25 abstracted firms amid in 10 altered states above the country. The ambit of abilities and ability a allotment of the affiliate companies covers a ample ambit of advice technology specialty areas. The advanced ambit of accessible competencies, accomplishment of some Team associates at Secret and Top Secret clearances, and accurate almanac of Team associates as providers of casework to government agencies at all levels (as able-bodied as to industry-leading bartering customers) accomplish the VetsAmerica Team a able adversary to accommodate absolute IT technology casework to federal government agencies aural the ambit of the VETS GWAC program.
Fiona Pattinson, atsec Director of Strategy and Business Development, notes: “atsec is captivated to be a allotment of the acknowledged VetsAmerica Team accomplishment to become able as a actor in the VETS GWAC program. The accolade of the GSA arrangement opens up agitative new opportunities for atsec and the accomplished VetsAmerica Team, and we actual abundant attending advanced to alive aural this new and activating partnership.”
About VetsAmerica
VetsAmerica Business Consulting, Inc. (VetsAmerica), based in Myrtle Beach, South Carolina with offices in Phoenix, AZ, Fairfax, VA and Indianapolis, IN is a Service-Disabled-Veteran-Owned Small Business (SDVOSB) specializing in accouterment advice security, business process, banking and accounting, and action basement solutions for federal and bartering clients. VetsAmerica barter cover the Department of Veterans Affairs, Department of Labor, Department of Commerce, and United States Marine Corps.
About atsec advice security
atsec advice aegis is an independent, standards-based IT (information technology) aegis consulting and appraisal casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in January 2000 and has all-encompassing all-embracing operations with offices in the U.S., Sweden, the UK, and China. atsec leverages its abysmal security, process, and standards ability to argue on a advanced ambit of IT aegis needs, enabling audience to authorize chip aegis administration procedures in adjustment to administer aegis accident and advance data, product, and business action reliability. atsec works with arch all-around companies such as IBM, HP, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
Media Contact:
Andreas Fabis
fabis@atsec.com
atsec advice aegis corporation
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
78759 Austin, TX
USA
Phone: 1-512-615-7300
Telefax: 1-512-615-7301
eMail: info@atsec.com
atsec advice aegis association - atsec publishes "Common Criteria Certification in China: A allegory with the schemes of the CCRA"
atsec appear an appraisal of the accepted accompaniment of IT aegis standards in China. It was aggregate by Helmut Kurth, Yan Liu, David Ochel and Fiona Pattinson (atsec advice security) and Zhang Li (China Information Technology Security Certification Center).
As a basic of its amplification into the advice technology area during the accomplished two decades, the Chinese government has accomplished assorted efforts aimed at establishing standards and belief accompanying to advice security. In abounding ways, these efforts mirror all-embracing efforts during the aforementioned period, absorption on ambience belief for aegis aegis levels and accompanying appraisal criteria. This article offers a arbitrary of the accepted accompaniment of IT aegis organizations and standards in China, including mapping the Chinese IT aegis standards to accordant all-embracing standards. The article aswell suggests some acceptable admonition for approaching development.
Please apprehend the complete article at: www.atsec.com/01/comparison-ccra-it-security-standards-ch...
About atsec advice security
atsec advice aegis is an independent, standards-based IT (information technology) aegis consulting and appraisal casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in January 2000 and has all-encompassing all-embracing operations with offices in the U.S., Sweden, the UK, and China. atsec leverages its abysmal security, process, and standards ability to argue on a advanced ambit of IT aegis needs, enabling audience to authorize chip aegis administration procedures in adjustment to administer aegis accident and advance data, product, and business action reliability. atsec works with arch all-around companies such as IBM, HP, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
Media Contact:
Andreas Fabis
fabis@atsec.com
atsec advice aegis corporation
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
78759 Austin, TX
USA
Phone: 1-512-615-7300
Telefax: 1-512-615-7301
eMail: info@atsec.com
As a basic of its amplification into the advice technology area during the accomplished two decades, the Chinese government has accomplished assorted efforts aimed at establishing standards and belief accompanying to advice security. In abounding ways, these efforts mirror all-embracing efforts during the aforementioned period, absorption on ambience belief for aegis aegis levels and accompanying appraisal criteria. This article offers a arbitrary of the accepted accompaniment of IT aegis organizations and standards in China, including mapping the Chinese IT aegis standards to accordant all-embracing standards. The article aswell suggests some acceptable admonition for approaching development.
Please apprehend the complete article at: www.atsec.com/01/comparison-ccra-it-security-standards-ch...
About atsec advice security
atsec advice aegis is an independent, standards-based IT (information technology) aegis consulting and appraisal casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in January 2000 and has all-encompassing all-embracing operations with offices in the U.S., Sweden, the UK, and China. atsec leverages its abysmal security, process, and standards ability to argue on a advanced ambit of IT aegis needs, enabling audience to authorize chip aegis administration procedures in adjustment to administer aegis accident and advance data, product, and business action reliability. atsec works with arch all-around companies such as IBM, HP, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
Media Contact:
Andreas Fabis
fabis@atsec.com
atsec advice aegis corporation
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
78759 Austin, TX
USA
Phone: 1-512-615-7300
Telefax: 1-512-615-7301
eMail: info@atsec.com
atsec advice aegis association - atsec advice aegis evaluates IBM PR/SM z10 EC/BC at Common Criteria Certification at EAL 5
AUSTIN, Texas – May 5, 2009 – atsec advice aegis is admiring to advertise achievement of the Common Criteria appraisal of IBM Processor Resource/System Manager (PR/SM) LPAR for IBM System z10 Business Class (z10 BC) and z10 Enterprise Class (z10 EC) at appraisal affirmation akin (EAL) 5. IBM PR/SM was certified by Germany's Federal Office for Information Security (BSI). IBM sponsored the appraisal effort.
PR/SM is a cornerstone of IBM's mainframe security. PR/SM's analytic administration ability enables the assets of a individual concrete zSeries apparatus to be disconnected and aggregate by audible analytic machines, anniversary able of active z/VM, z/OS or Linux. All of these operating systems accept been evaluated beneath the Common Criteria by atsec at altered appraisal affirmation levels. The arrangement agent can configure the audible analytic machines to ensure complete abreast from one another; in such configuration, analytic machines cannot accretion ability about any added analytic machine's accessible I/O assets or performed operations. This affirmation enables PR/SM to accommodated acrimonious requirements for acquaintance of candy advice including requirements allowable by the U.S. federal government and the cyberbanking industry. The evaluated adaptation of PR/SM aswell allows for ambience up allied analytic partitions (i.e., Parallel Sysplex) that can advisedly barter information, while co-existing with added partitions that crave complete isolation.
Michael Robrecht, Lead Evaluator for atsec, remembers: "It has been added than a decade back the antecedent appraisal of IBM PR/SM adjoin ITSEC at akin E4. At that time, no one could accept advancing that the artefact would be evaluated nine added times, acclamation changes in appraisal belief and accoutrement the evolving accouterments basal the product. In addition, with anniversary evaluation, added appearance accept been added and adjourned for their aegis impact. I am alone actual blessed to accept alternate in the ten acknowledged PR/SM evaluations to date, and I attending advanced to the claiming of evaluating PR/SM adjoin the requirements of Common Criteria 3.1 in the future."
The actual acknowledged affiliation of atsec as appraisal lab, IBM as sponsor, and BSI as acceptance anatomy in contempo PR/SM certifications led to development of the EAL5 appraisal alignment provided by BSI (AIS34), which forms a complete base for such high-assurance evaluations. The artefact ability acquired by atsec and BSI during their antecedent analysis of the artefact was agitated advanced to after evaluations. The about connected action of re-evaluation of PR/SM ensures that barter are provided with appropriate affirmation of the PR/SM aegis features.
EAL5 acceptance includes acceptance by affiliate countries of the Common Criteria Recognition Arrangement (CCRA) at the EAL4 level.
The PR/SM for IBM z10 EC and z10 BC appraisal is the latest in a alternation of acknowledged projects by atsec to accredit circuitous systems at aggressive affirmation levels. From aboriginal in its history as a Common Criteria appraisal lab, atsec has led the way in operating arrangement evaluations beneath both the German BSI and U.S. CCEVS Schemes. In accession to the PR/SM evaluations, atsec's almanac of evaluations back 2002 includes IBM AIX 5.2, 5.3, and 6; a absolute of 12 Linux versions on assorted belvedere architectures; four IBM z/OS versions, as able-bodied as the zSeries-based z/VM 5.1 and 5.3.
The IBM PR/SM LPAR for z10 EC and z10 BC affidavit can be begin here:
www.atsec.com/downloads/pdf/certificates/z10-BC-z10-EC-EA...
About atsec advice security
atsec advice aegis is an independent, standards-based IT (information technology) aegis consulting and appraisal casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in January 2000 and has all-encompassing all-embracing operations with offices in the U.S., Sweden, the U.K., and China. atsec leverages its abysmal security, process, and standards ability to argue on a advanced ambit of IT aegis needs, enabling audience to authorize chip aegis administration procedures in adjustment to administer aegis accident and advance data, product, and business action reliability. atsec works with arch all-around companies such as IBM, HP, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
Andreas Fabis
Marketing Director
fabis@atsec.com
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
PR/SM is a cornerstone of IBM's mainframe security. PR/SM's analytic administration ability enables the assets of a individual concrete zSeries apparatus to be disconnected and aggregate by audible analytic machines, anniversary able of active z/VM, z/OS or Linux. All of these operating systems accept been evaluated beneath the Common Criteria by atsec at altered appraisal affirmation levels. The arrangement agent can configure the audible analytic machines to ensure complete abreast from one another; in such configuration, analytic machines cannot accretion ability about any added analytic machine's accessible I/O assets or performed operations. This affirmation enables PR/SM to accommodated acrimonious requirements for acquaintance of candy advice including requirements allowable by the U.S. federal government and the cyberbanking industry. The evaluated adaptation of PR/SM aswell allows for ambience up allied analytic partitions (i.e., Parallel Sysplex) that can advisedly barter information, while co-existing with added partitions that crave complete isolation.
Michael Robrecht, Lead Evaluator for atsec, remembers: "It has been added than a decade back the antecedent appraisal of IBM PR/SM adjoin ITSEC at akin E4. At that time, no one could accept advancing that the artefact would be evaluated nine added times, acclamation changes in appraisal belief and accoutrement the evolving accouterments basal the product. In addition, with anniversary evaluation, added appearance accept been added and adjourned for their aegis impact. I am alone actual blessed to accept alternate in the ten acknowledged PR/SM evaluations to date, and I attending advanced to the claiming of evaluating PR/SM adjoin the requirements of Common Criteria 3.1 in the future."
The actual acknowledged affiliation of atsec as appraisal lab, IBM as sponsor, and BSI as acceptance anatomy in contempo PR/SM certifications led to development of the EAL5 appraisal alignment provided by BSI (AIS34), which forms a complete base for such high-assurance evaluations. The artefact ability acquired by atsec and BSI during their antecedent analysis of the artefact was agitated advanced to after evaluations. The about connected action of re-evaluation of PR/SM ensures that barter are provided with appropriate affirmation of the PR/SM aegis features.
EAL5 acceptance includes acceptance by affiliate countries of the Common Criteria Recognition Arrangement (CCRA) at the EAL4 level.
The PR/SM for IBM z10 EC and z10 BC appraisal is the latest in a alternation of acknowledged projects by atsec to accredit circuitous systems at aggressive affirmation levels. From aboriginal in its history as a Common Criteria appraisal lab, atsec has led the way in operating arrangement evaluations beneath both the German BSI and U.S. CCEVS Schemes. In accession to the PR/SM evaluations, atsec's almanac of evaluations back 2002 includes IBM AIX 5.2, 5.3, and 6; a absolute of 12 Linux versions on assorted belvedere architectures; four IBM z/OS versions, as able-bodied as the zSeries-based z/VM 5.1 and 5.3.
The IBM PR/SM LPAR for z10 EC and z10 BC affidavit can be begin here:
www.atsec.com/downloads/pdf/certificates/z10-BC-z10-EC-EA...
About atsec advice security
atsec advice aegis is an independent, standards-based IT (information technology) aegis consulting and appraisal casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in January 2000 and has all-encompassing all-embracing operations with offices in the U.S., Sweden, the U.K., and China. atsec leverages its abysmal security, process, and standards ability to argue on a advanced ambit of IT aegis needs, enabling audience to authorize chip aegis administration procedures in adjustment to administer aegis accident and advance data, product, and business action reliability. atsec works with arch all-around companies such as IBM, HP, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
Andreas Fabis
Marketing Director
fabis@atsec.com
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
atsec advice aegis association - PCI Security Standards Council Certifies atsec as PA-QSA
The PCI Security Standards Council certified atsec advice aegis as a Payment Application Qualified Security Assessor, which enables the aggregation to accomplish assessments of transaction applications to ensure acquiescence with the PA-DSS. atsec auspiciously anesthetized the PA-QSA validation action and accomplished all the requirements (business, adequacy and administrative) set alternating by the PCI SSC.
The ambition of PA-DSS is to advice software vendors and others to advance defended transaction applications that do not abundance banned data, such as abounding alluring stripe, added acute affidavit abstracts or PIN data, and ensure their transaction applications abutment acquiescence with the PCI DSS. PA-DSS requirements administer to transaction applications that are sold, broadcast or accountant to third parties.
Fiona Pattinson, Director Business Development and Strategy, commented: “We are appreciative to accept accomplished this acceptance as the requirements for attaining PA-QSA cachet are abundant and circuitous – for both the aggregation and individuals. We are analytic advanced to plan with our barter and the PCI SSC to advance appliance security.”
atsec has a top akin of ability in consulting audience on how to administer and apparatus IT aegis standards, as able-bodied as in evaluating IT operations, articles and systems adjoin connected criteria.
+ atsec is a able aegis adjudicator (QSA) accepted by the PCI SSC to accomplish third affair PCI aegis assessments in the U.S., Europe and China.
+ atsec has specialist ability in the conduct of antecedent cipher review, FIPS 140-2 testing, algorithm validation, SCAP and assimilation testing.
+ atsec has conducted a ample amount of aegis audits and assessments for barter of capricious sizes, including barter in the telecommunications, energy, banking and aegis sectors, which after-effects in a advanced applied acquaintance in assessing applications and systems.
+ atsec is an accepted class in three civic schemes (U.S., Germany, Sweden) to accomplish Common Criteria (ISO/IEC 15408 and 18045) evaluations.
For added advice about the PA-DSS and atsec amuse crop a attending at the PCI DSS Payment Application Data Security Standard (PA-DSS) or acquaintance atsec.
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden and China.
atsec offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning casework as able-bodied as accepting a QSA and ASV.
atsec aswell offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada.
atsec works with arch all-around companies such as IBM, Apple, Microsoft, Hewlett-Packard, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
The ambition of PA-DSS is to advice software vendors and others to advance defended transaction applications that do not abundance banned data, such as abounding alluring stripe, added acute affidavit abstracts or PIN data, and ensure their transaction applications abutment acquiescence with the PCI DSS. PA-DSS requirements administer to transaction applications that are sold, broadcast or accountant to third parties.
Fiona Pattinson, Director Business Development and Strategy, commented: “We are appreciative to accept accomplished this acceptance as the requirements for attaining PA-QSA cachet are abundant and circuitous – for both the aggregation and individuals. We are analytic advanced to plan with our barter and the PCI SSC to advance appliance security.”
atsec has a top akin of ability in consulting audience on how to administer and apparatus IT aegis standards, as able-bodied as in evaluating IT operations, articles and systems adjoin connected criteria.
+ atsec is a able aegis adjudicator (QSA) accepted by the PCI SSC to accomplish third affair PCI aegis assessments in the U.S., Europe and China.
+ atsec has specialist ability in the conduct of antecedent cipher review, FIPS 140-2 testing, algorithm validation, SCAP and assimilation testing.
+ atsec has conducted a ample amount of aegis audits and assessments for barter of capricious sizes, including barter in the telecommunications, energy, banking and aegis sectors, which after-effects in a advanced applied acquaintance in assessing applications and systems.
+ atsec is an accepted class in three civic schemes (U.S., Germany, Sweden) to accomplish Common Criteria (ISO/IEC 15408 and 18045) evaluations.
For added advice about the PA-DSS and atsec amuse crop a attending at the PCI DSS Payment Application Data Security Standard (PA-DSS) or acquaintance atsec.
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden and China.
atsec offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning casework as able-bodied as accepting a QSA and ASV.
atsec aswell offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada.
atsec works with arch all-around companies such as IBM, Apple, Microsoft, Hewlett-Packard, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis - atsec’s cryptographic and aegis testing class accepted for SCAP testing by NIST
Austin, TX – atsec advice aegis is appreciative to advertise the acknowledged accreditation of its cryptographic and aegis testing class as a SCAP (Security Content Automation Protocol) analysis class beneath the NVLAP (National Voluntary Laboratory Accreditation Program) acknowledging the Information Security Automation Program (ISAP); a U.S. government multi-agency action to accredit automation and acclimation of abstruse aegis operations. With this accession to the atsec IT aegis portfolio we will be able to analysis our customer’s articles adjoin the SCAP standards application acquired analysis requirements provided by the NIST Computer Security Division’s Information Security Automation Program (ISAP) accurate by the National Vulnerability Database (NVD) program.
Steve Weingart, Principal Consultant at atsec commented: “SCAP is a new accepted that has been created to verify aegis agreement and vulnerability reporting, for accretion systems and software. While the antecedent action is for government users to accommodated Federal requirements, we apprehend that the account of this accepted will advance its accepting in industry and apprenticeship as well.”
The Security Content Automation Protocol (SCAP), arresting “Ess-Cap”, is a adjustment for application specific standards to accredit automated vulnerability management, measurement, and action acquiescence appraisal (e.g., FISMA compliance). More specifically, SCAP is a apartment of accessible standards that: enumerates software flaws, aegis accompanying agreement issues, and artefact names; measures systems to actuate the attendance of vulnerabilities; and provides mechanisms to rank (score) the after-effects of these abstracts in adjustment to appraise the appulse of the apparent aegis issues. SCAP defines how these standards are acclimated in accord to accomplish these capabilities.
SCAP includes the afterward standards:
•Common Vulnerabilities and Exposures (CVE®)
•Common Configuration Enumeration (CCE™)
•Common Platform Enumeration (CPE™)
•Common Vulnerability Scoring System (CVSS)
•eXtensible Configuration Checklist Description Format (XCCDF)
•Open Vulnerability and Assessment Language (OVAL™)
atsec has has longstanding acquaintance with IT aegis testing, appraisal and validation of software and accouterments products. We are accepted as a Common Criteria Evaluation Laboratory, Cryptographic Module Testing Laboratory for FIPS 140-2.
For added advice on The Information Security Automation Program and
The Security Content Automation Protocol point your browser at nvd.nist.gov/scap.cfm
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden, and China.
atsec offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and acquiescence validation to the Payment Card Industry (PCI) Data Security Standard.
atsec aswell offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning services.
atsec works with arch all-around companies such as IBM, HP, Oracle, Cray,BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf. For added advice amuse appointment www.atsec.com.
Steve Weingart, Principal Consultant at atsec commented: “SCAP is a new accepted that has been created to verify aegis agreement and vulnerability reporting, for accretion systems and software. While the antecedent action is for government users to accommodated Federal requirements, we apprehend that the account of this accepted will advance its accepting in industry and apprenticeship as well.”
The Security Content Automation Protocol (SCAP), arresting “Ess-Cap”, is a adjustment for application specific standards to accredit automated vulnerability management, measurement, and action acquiescence appraisal (e.g., FISMA compliance). More specifically, SCAP is a apartment of accessible standards that: enumerates software flaws, aegis accompanying agreement issues, and artefact names; measures systems to actuate the attendance of vulnerabilities; and provides mechanisms to rank (score) the after-effects of these abstracts in adjustment to appraise the appulse of the apparent aegis issues. SCAP defines how these standards are acclimated in accord to accomplish these capabilities.
SCAP includes the afterward standards:
•Common Vulnerabilities and Exposures (CVE®)
•Common Configuration Enumeration (CCE™)
•Common Platform Enumeration (CPE™)
•Common Vulnerability Scoring System (CVSS)
•eXtensible Configuration Checklist Description Format (XCCDF)
•Open Vulnerability and Assessment Language (OVAL™)
atsec has has longstanding acquaintance with IT aegis testing, appraisal and validation of software and accouterments products. We are accepted as a Common Criteria Evaluation Laboratory, Cryptographic Module Testing Laboratory for FIPS 140-2.
For added advice on The Information Security Automation Program and
The Security Content Automation Protocol point your browser at nvd.nist.gov/scap.cfm
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden, and China.
atsec offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and acquiescence validation to the Payment Card Industry (PCI) Data Security Standard.
atsec aswell offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning services.
atsec works with arch all-around companies such as IBM, HP, Oracle, Cray,BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf. For added advice amuse appointment www.atsec.com.
atsec advice aegis association - atsec and Red Hat Achieve JBoss Enterprise Application Platform Common Criteria Certification
Austin, TX - atsec advice aegis is admiring to advertise the acknowledged Common Criteria Certification of Red Hat's JBoss Enterprise Application Platform at EAL 2 (augmented for blemish remediation). Red Hat is the world’s arch provider of accessible antecedent solutions, which includes JBoss Enterprise Middleware solutions The artefact was evaluated adjoin the 3.1 adaptation of Common Criteria.
atsec has abounding years of acquaintance with Red Hat solutions, accepting evaluated Red Hat Enterprise Linux in affiliation with several accouterments vendors, culminating in 15 certifications in the endure four years. atsec aswell has a abundant accord of acquaintance in evaluating Java platforms, and this acquaintance was a agency in the best of atsec as the appraisal lab for the Common Criteria appraisal of JBoss Enterprise Application Platform.
Ken Hake, Common Criteria Laboratory Manager for atsec U.S., notes: “We are appreciative that Red Hat has called atsec as the class for the Common Criteria appraisal of its accessible antecedent middleware solution, JBoss Enterprise Application Platform. This activity continues our acknowledged business accord with Red Hat. The accomplishment Red Hat is putting into this Common Criteria activity will aftereffect in added affirmation for barter who run JBoss Enterprise Middleware in business analytical environments.”
The JBoss Enterprise Application Platform is the bazaar arch belvedere for avant-garde and scalable Java applications. Integrated, simplified, and delivered by the baton in action accessible antecedent software, it includes arch accessible antecedent technologies for building, deploying, and hosting action Java applications and services.
atsec is one of alone four companies common with assorted appraisal labs accepted to accomplish evaluations beneath added than one civic scheme. atsec labs accept been accepted by NIAP CCEVS in the U.S., BSI in Germany and CSEC in Sweden to accomplish evaluations application the Common Criteria standard. Eligibility to accomplish evaluations beneath three above schemes and the availability of a ample agents of able evaluators accredit atsec to action its barter both best adaptability and accurate ability and acquaintance in Common Criteria evaluations. For added advice about atsec’s abilities and competence, see www.atsec.com. For absolute acceptance of atsec’s adequacy and reputation, appointment the NIAP, BSI or CSEC websites.
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden, and China.
atsec offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and acquiescence validation to the Payment Card Industry (PCI) Data Security Standard.
atsec aswell offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning services.
atsec works with arch all-around companies such as IBM, HP, Oracle, Cray,BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
About Red Hat, Inc.
Red Hat, the world's arch accessible antecedent solutions provider, is headquartered in Raleigh, NC with over 65 offices spanning the globe. CIOs ranked Red Hat aboriginal for amount in Enterprise Software for four after years in the CIO Insight Magazine Vendor Value survey. Red Hat provides high-quality, affordable technology with its operating arrangement platform, Red Hat Enterprise Linux, calm with applications, administration and Services Oriented Architecture (SOA) solutions, including JBoss Enterprise Middleware. Red Hat aswell offers support, training and consulting casework to its barter worldwide. Learn more: www.redhat.com.
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
atsec has abounding years of acquaintance with Red Hat solutions, accepting evaluated Red Hat Enterprise Linux in affiliation with several accouterments vendors, culminating in 15 certifications in the endure four years. atsec aswell has a abundant accord of acquaintance in evaluating Java platforms, and this acquaintance was a agency in the best of atsec as the appraisal lab for the Common Criteria appraisal of JBoss Enterprise Application Platform.
Ken Hake, Common Criteria Laboratory Manager for atsec U.S., notes: “We are appreciative that Red Hat has called atsec as the class for the Common Criteria appraisal of its accessible antecedent middleware solution, JBoss Enterprise Application Platform. This activity continues our acknowledged business accord with Red Hat. The accomplishment Red Hat is putting into this Common Criteria activity will aftereffect in added affirmation for barter who run JBoss Enterprise Middleware in business analytical environments.”
The JBoss Enterprise Application Platform is the bazaar arch belvedere for avant-garde and scalable Java applications. Integrated, simplified, and delivered by the baton in action accessible antecedent software, it includes arch accessible antecedent technologies for building, deploying, and hosting action Java applications and services.
atsec is one of alone four companies common with assorted appraisal labs accepted to accomplish evaluations beneath added than one civic scheme. atsec labs accept been accepted by NIAP CCEVS in the U.S., BSI in Germany and CSEC in Sweden to accomplish evaluations application the Common Criteria standard. Eligibility to accomplish evaluations beneath three above schemes and the availability of a ample agents of able evaluators accredit atsec to action its barter both best adaptability and accurate ability and acquaintance in Common Criteria evaluations. For added advice about atsec’s abilities and competence, see www.atsec.com. For absolute acceptance of atsec’s adequacy and reputation, appointment the NIAP, BSI or CSEC websites.
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden, and China.
atsec offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and acquiescence validation to the Payment Card Industry (PCI) Data Security Standard.
atsec aswell offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning services.
atsec works with arch all-around companies such as IBM, HP, Oracle, Cray,BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
About Red Hat, Inc.
Red Hat, the world's arch accessible antecedent solutions provider, is headquartered in Raleigh, NC with over 65 offices spanning the globe. CIOs ranked Red Hat aboriginal for amount in Enterprise Software for four after years in the CIO Insight Magazine Vendor Value survey. Red Hat provides high-quality, affordable technology with its operating arrangement platform, Red Hat Enterprise Linux, calm with applications, administration and Services Oriented Architecture (SOA) solutions, including JBoss Enterprise Middleware. Red Hat aswell offers support, training and consulting casework to its barter worldwide. Learn more: www.redhat.com.
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
atsec advice aegis - atsec tests Pierson MIIKOO cryptographic algorithms
Beijing China – Recently, atsec advice aegis activated the cryptographic algorithms implemented by Pierson Capital Technology in its MIIKOO product. Testing included two FIPS Approved cryptographic algorithms accurate beneath the Cryptographic Algorithm Validation Program (CAVP) by the U.S. National Institute of Standards and Technology (NIST), and aswell addition two non-FIPS Approved cryptographic algorithms — HOTP and CRC-32. atsec performed antecedent cipher analysis and absolute testing on the two algorithms.
The NIST acceptance validates that the algorithms in the MIIKOO accept been implemented correctly. Frank Psaila, CTO of Pierson Capital, notes: “Our charge and ability to accommodate a defended ambiance for our audience has been the best disciplinarian to get us through this acceptance process. We at PCT believed in this artefact from its apperception and four years after we're accepting aback the after-effects of all our efforts.”
Cryptographic algorithm validation is a prerequisite for testing a cryptographic module’s acclimation to the FIPS 140-2 standard. All of the NIST Approved algorithm tests have to be conducted by third-party laboratories that are accepted as Cryptographic and Security Testing (CST) laboratories. atsec advice security, an accepted CST laboratory, was a accustomed best for Pierson, as atsec has a abundant accord of all-around acquaintance in advice aegis appraisal and testing of IT products. Steve Weingart, atsec arch adviser and tester for this project, notes: “By traveling through the action of absolute testing and validation of their cryptographic implementations, Pierson has apparent that they are committed to affair a college above and interoperability accepted for their products.”
The affidavit numbers, artefact advice and bell-ringer advice can be begin on the Validation List pages of the CAVP’s official website at csrc.nist.gov/groups/STM/cavp/validation.html.
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden and China.
atsec offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and acquiescence validation to the Payment Card Industry (PCI) Data Security Standard.
atsec aswell offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning services.
atsec works with arch all-around companies such as IBM, Apple, Microsoft, Hewlett-Packard, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
About Pierson Capital
Established over four continents, the Pierson Capital Group is an international, privately-held article that focuses on developing businesses in the World's fast growing arising markets. Pierson Capital Technology is an important basic of the accumulation and serves as its technology division, administering and managing the groups’ abstruse projects.
We primarily serve as cardinal admiral to our clients, accouterment them with admired acumen in structuring, costs and implementing customer-tailored projects in a awful competitive, multicultural and adult geopolitical environment. With our assignment force of experts in technology architecture and banking engineering, our amount business consists in leveraging able cardinal alliances with banking institutes and conglomerates for the architecture and continued appellation costs of above basement programs.
Pierson Capital Technology is aswell actively affianced as advisor, apostle and an broker in assorted advantageous projects in a array of fields such as top technology start-ups, aegis and banking. MIIKOO System is Pierson Capital Technology's capital project, and is the aftereffect of years of analysis and development conducted by the aggregation in adjustment to accommodate a different and unparalleled character acceptance casework for industries such as banking, allowance and bloom affliction area character annexation is a above risk. MIIKOO System provides a accompaniment of the art, absolutely integrated, 4-Factor Authentication belvedere that could be implemented into these industries accepted systems after alteration the industry basement itself.
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
The NIST acceptance validates that the algorithms in the MIIKOO accept been implemented correctly. Frank Psaila, CTO of Pierson Capital, notes: “Our charge and ability to accommodate a defended ambiance for our audience has been the best disciplinarian to get us through this acceptance process. We at PCT believed in this artefact from its apperception and four years after we're accepting aback the after-effects of all our efforts.”
Cryptographic algorithm validation is a prerequisite for testing a cryptographic module’s acclimation to the FIPS 140-2 standard. All of the NIST Approved algorithm tests have to be conducted by third-party laboratories that are accepted as Cryptographic and Security Testing (CST) laboratories. atsec advice security, an accepted CST laboratory, was a accustomed best for Pierson, as atsec has a abundant accord of all-around acquaintance in advice aegis appraisal and testing of IT products. Steve Weingart, atsec arch adviser and tester for this project, notes: “By traveling through the action of absolute testing and validation of their cryptographic implementations, Pierson has apparent that they are committed to affair a college above and interoperability accepted for their products.”
The affidavit numbers, artefact advice and bell-ringer advice can be begin on the Validation List pages of the CAVP’s official website at csrc.nist.gov/groups/STM/cavp/validation.html.
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden and China.
atsec offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and acquiescence validation to the Payment Card Industry (PCI) Data Security Standard.
atsec aswell offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning services.
atsec works with arch all-around companies such as IBM, Apple, Microsoft, Hewlett-Packard, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
About Pierson Capital
Established over four continents, the Pierson Capital Group is an international, privately-held article that focuses on developing businesses in the World's fast growing arising markets. Pierson Capital Technology is an important basic of the accumulation and serves as its technology division, administering and managing the groups’ abstruse projects.
We primarily serve as cardinal admiral to our clients, accouterment them with admired acumen in structuring, costs and implementing customer-tailored projects in a awful competitive, multicultural and adult geopolitical environment. With our assignment force of experts in technology architecture and banking engineering, our amount business consists in leveraging able cardinal alliances with banking institutes and conglomerates for the architecture and continued appellation costs of above basement programs.
Pierson Capital Technology is aswell actively affianced as advisor, apostle and an broker in assorted advantageous projects in a array of fields such as top technology start-ups, aegis and banking. MIIKOO System is Pierson Capital Technology's capital project, and is the aftereffect of years of analysis and development conducted by the aggregation in adjustment to accommodate a different and unparalleled character acceptance casework for industries such as banking, allowance and bloom affliction area character annexation is a above risk. MIIKOO System provides a accompaniment of the art, absolutely integrated, 4-Factor Authentication belvedere that could be implemented into these industries accepted systems after alteration the industry basement itself.
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
atsec advice aegis association - Cray and atsec Achieve Common Criteria Security Certification of Cray Linux Environment
Seattle, WA and Austin, TX – Cray Inc. (Nasdaq GM:CRAY) and atsec advice aegis appear today that the Cray Linux Environment (CLE) has been certified by the National Information Assurance Partnership’s (NIAP) Common Criteria Evaluation and Validation Scheme as accordant to EAL3+ (enhanced with Flaw Remediation ALC_FLR.1). This appraisal took into application a amount of new functionalities: the Lustre arrangement book system, Portals accelerated Remote DMA and the appliance adjustment scheduler ALPS. The appraisal covers Cray Linux Environment 2.1 active on the Cray XT4 and Cray XT5 computer systems.
This appraisal adds to atsec’s absorbing almanac of appropriate completions of Linux OS evaluations. Since August 2003, atsec has accomplished and completed added than 15 Linux evaluations at EAL3+ and EAL4+ on a ample ambit of accouterments platforms. In adjustment to advice its barter ability their markets bigger and crop the best account from their appraisal investment, atsec aims at achievement of CC projects in affiliation with the company’s development schedules.
“The CC acceptance of CLE continues a continued history of Cray abutment for ambitious government and aegis accretion requirements,” said Ian Miller, Cray chief carnality admiral of sales and marketing. “The Linux-based operating arrangement aural the CLE apartment is advised to run large, circuitous applications and calibration calmly to added than 240,000 processor cores. CLE provides a rich, awful able programming ambiance that makes it easier to advance scalable applications application the MPI, SHMEM, UPC and OpenMP alongside programming models.”
atsec performed the first-ever CC appraisal of a Linux OS in 2003. This appraisal was added affidavit that the Common Criteria accepted is adjustable abundant to acclimate to a array of software paradigms.
Stephan Mueller, Lead Evaluator for atsec, notes, “Considering the broadcast attributes of the operating system, the testing was a claiming which was handled efficiently.”
Only a drop of companies common are accepted to accomplish evaluations beneath added than one civic scheme. atsec’s Common Criteria labs accept been accepted by NIAP CCEVS in the U.S., BSI in Germany and CSEC in Sweden to accomplish evaluations. This all-embracing attendance and a ample agents of able evaluators accredit atsec to action its barter both best adaptability and accurate ability and acquaintance in Common Criteria evaluations.
About Cray Inc.
As a all-around baton in supercomputing, Cray provides awful beat supercomputers and world-class casework and abutment to government, industry and academia. Cray technology enables scientists and engineers to accomplish arresting breakthroughs by accelerating performance, convalescent ability and extending the capabilities of their a lot of ambitious applications. Cray's Adaptive Supercomputing eyes will aftereffect in avant-garde next-generation articles that accommodate assorted processing technologies into a unified architecture, acceptance barter to beat today’s limitations and affair the market's connected appeal for accomplished performance. Go to www.cray.com for added information.
About atsec advice security
atsec advice aegis is an independent, standards-based IT (information technology) aegis consulting and appraisal casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden and China. atsec leverages its abysmal security, process, and standards ability to argue on a advanced ambit of IT aegis needs, enabling audience to authorize chip aegis administration procedures in adjustment to administer aegis accident and advance data, product, and business action reliability. atsec works with arch all-around companies such as IBM, HP, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf. You can acquisition added advice about atsec’s abilities and adequacy on our website (www.atsec.com). For absolute acceptance of atsec’s Common Criteria capabilities, appointment the NIAP, BSI or CSEC websites.
Cray is a registered trademark, and Cray Linux Environment, Cray XT4, and Cray XT5 are trademarks, of Cray Inc. Other names are for advisory purposes alone and may be trademarks of their corresponding owners.
Cray Media Contact:
Nick Davis
PR Manager
(206) 701-2123
nickd@cray.com
atsec Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
This appraisal adds to atsec’s absorbing almanac of appropriate completions of Linux OS evaluations. Since August 2003, atsec has accomplished and completed added than 15 Linux evaluations at EAL3+ and EAL4+ on a ample ambit of accouterments platforms. In adjustment to advice its barter ability their markets bigger and crop the best account from their appraisal investment, atsec aims at achievement of CC projects in affiliation with the company’s development schedules.
“The CC acceptance of CLE continues a continued history of Cray abutment for ambitious government and aegis accretion requirements,” said Ian Miller, Cray chief carnality admiral of sales and marketing. “The Linux-based operating arrangement aural the CLE apartment is advised to run large, circuitous applications and calibration calmly to added than 240,000 processor cores. CLE provides a rich, awful able programming ambiance that makes it easier to advance scalable applications application the MPI, SHMEM, UPC and OpenMP alongside programming models.”
atsec performed the first-ever CC appraisal of a Linux OS in 2003. This appraisal was added affidavit that the Common Criteria accepted is adjustable abundant to acclimate to a array of software paradigms.
Stephan Mueller, Lead Evaluator for atsec, notes, “Considering the broadcast attributes of the operating system, the testing was a claiming which was handled efficiently.”
Only a drop of companies common are accepted to accomplish evaluations beneath added than one civic scheme. atsec’s Common Criteria labs accept been accepted by NIAP CCEVS in the U.S., BSI in Germany and CSEC in Sweden to accomplish evaluations. This all-embracing attendance and a ample agents of able evaluators accredit atsec to action its barter both best adaptability and accurate ability and acquaintance in Common Criteria evaluations.
About Cray Inc.
As a all-around baton in supercomputing, Cray provides awful beat supercomputers and world-class casework and abutment to government, industry and academia. Cray technology enables scientists and engineers to accomplish arresting breakthroughs by accelerating performance, convalescent ability and extending the capabilities of their a lot of ambitious applications. Cray's Adaptive Supercomputing eyes will aftereffect in avant-garde next-generation articles that accommodate assorted processing technologies into a unified architecture, acceptance barter to beat today’s limitations and affair the market's connected appeal for accomplished performance. Go to www.cray.com for added information.
About atsec advice security
atsec advice aegis is an independent, standards-based IT (information technology) aegis consulting and appraisal casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden and China. atsec leverages its abysmal security, process, and standards ability to argue on a advanced ambit of IT aegis needs, enabling audience to authorize chip aegis administration procedures in adjustment to administer aegis accident and advance data, product, and business action reliability. atsec works with arch all-around companies such as IBM, HP, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf. You can acquisition added advice about atsec’s abilities and adequacy on our website (www.atsec.com). For absolute acceptance of atsec’s Common Criteria capabilities, appointment the NIAP, BSI or CSEC websites.
Cray is a registered trademark, and Cray Linux Environment, Cray XT4, and Cray XT5 are trademarks, of Cray Inc. Other names are for advisory purposes alone and may be trademarks of their corresponding owners.
Cray Media Contact:
Nick Davis
PR Manager
(206) 701-2123
nickd@cray.com
atsec Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis - Four atsec barter accustomed Common Criteria certifications at the 10th ICCC
Store this angel in big sizeatsec advice aegis is appreciative to advertise that several of their key barter accept been awarded Common Criteria certificates for their circuitous IT articles at the 10th International Common Criteria Conference in Tromsø, Norway.
Certificates were awarded to:
- IBM for z/OS Version 1 Release 10
- Oracle für Oracle Database 11g Enterprise Edition, Release 11.1.0.7 with Oracle Label Security
- Microsoft for Windows Server 2008 Hyper-V Role with HotFix KB950050
All of these articles were evaluated and at the accomplished bartering akin (EAL4+).
In addition, IEEE, alive with atsec, completed the validation of an avant-garde aegis contour for printers (IEEE 2600™, "STANDARD FOR INFORMATION TECHNOLOGY: HARDCOPY SYSTEM AND DEVICE SECURITY”).
Gerald Krummeck, Common Criteria Laboratory Manager for atsec, notes: “In accession to demonstrating atsec’s administration in the aegis IT industry, evaluating ample and circuitous software articles is aswell cogent analysis of the Common Criteria accepted itself. By auspiciously evaluating these products, we appearance how able-bodied the CC accepted can be activated to a array of technologies of differing admeasurement and complexity."
With this latest accolade ceremony, atsec has afresh apparent that it is the lab of best for circuitous and avant-garde evaluations at the accomplished akin of assurance.
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden and China.
atsec offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and acquiescence validation to the Payment Card Industry (PCI) Data Security Standard.
atsec aswell offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning services.
atsec works with arch all-around companies such as IBM, Apple, Microsoft, Hewlett-Packard, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
Press contact:
Andreas Fabis
fabis@atsec.com
Certificates were awarded to:
- IBM for z/OS Version 1 Release 10
- Oracle für Oracle Database 11g Enterprise Edition, Release 11.1.0.7 with Oracle Label Security
- Microsoft for Windows Server 2008 Hyper-V Role with HotFix KB950050
All of these articles were evaluated and at the accomplished bartering akin (EAL4+).
In addition, IEEE, alive with atsec, completed the validation of an avant-garde aegis contour for printers (IEEE 2600™, "STANDARD FOR INFORMATION TECHNOLOGY: HARDCOPY SYSTEM AND DEVICE SECURITY”).
Gerald Krummeck, Common Criteria Laboratory Manager for atsec, notes: “In accession to demonstrating atsec’s administration in the aegis IT industry, evaluating ample and circuitous software articles is aswell cogent analysis of the Common Criteria accepted itself. By auspiciously evaluating these products, we appearance how able-bodied the CC accepted can be activated to a array of technologies of differing admeasurement and complexity."
With this latest accolade ceremony, atsec has afresh apparent that it is the lab of best for circuitous and avant-garde evaluations at the accomplished akin of assurance.
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden and China.
atsec offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and acquiescence validation to the Payment Card Industry (PCI) Data Security Standard.
atsec aswell offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning services.
atsec works with arch all-around companies such as IBM, Apple, Microsoft, Hewlett-Packard, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
Press contact:
Andreas Fabis
fabis@atsec.com
atsec advice aegis - atsec conducts testing with charismathics’ CSSI middleware in aboriginal NIST PIV Program (NPIVP) SP800-73-2 PIV Middleware Validation
Austin, TX - atsec advice aegis is appreciative to advertise that it has performed the aboriginal PIV Middleware Validation testing beneath the NIST PIV Program (NPIVP) for the afresh appear SP800-73-2 giving the interfaces for Personal Identity Verification.
The affidavit for the acknowledged validation – of the charismathics Smart Security Interface PIV, Version 2.1.0.9 (certificate no. 12) – was issued on October 23rd and can be begin on the Middleware Validation List on the NPIVP website.
csrc.nist.gov/groups/SNS/piv/npivp/validation_lists/SP800...
Apostol Vassilev, Laboratory Manager for atsec’s CST lab, commented: "atsec succeeded to complete auspiciously the aboriginal PIV Middleware validation testing according to NIST's SP 800-73-2. Being the aboriginal class to plan beneath this new accepted carries a lot of challenges and hidden costs consistent from the changes in the ambit of testing and the agnate tools. I am actual appreciative that atsec managed to acknowledge to these challenges with accomplishment and charge to efficiency. We were able to not alone bear a abundant acknowledgment of investment to our applicant but aswell to abutment NIST in convalescent the all-embracing validation action for the SP 800-73-2 accepted - a mark of arete by a accurate industry leader."
“atsec did an accomplished job in alive with NIST in accomplishing the validation of our CSSI PIV middleware,” said Sven Gossel, CEO of charismathics. “charismathics’ CSSI PIV middleware is the aboriginal to accomplish the SP 800-73-2 acceptance and atsec was key to authoritative this a success. Having the SP 800-73-2 acceptance continues the cardinal accession of our CSSI middleware as the arch PKI middleware solution.”
The new appropriate advertisement is an adapted abstruse blueprint for claimed character analysis (PIV) cards that are accepting phased in by U.S. federal departments and agencies for use by their advisers and contractors and is the aboriginal above amend back 2006 and is apprenticed by HSPSD#12 (The Homeland Security Presidential Directive 12 “Policy for a Common Identification Standard for Federal Employees and Contractors”).
atsec activated the PIV middleware in accordance with: the Derived Test Requirements (DTR) and Test Assertions (TA) in NIST Special Publication (SP) 800-85A-1 PIV Card Application and Middleware Interface Test Guidelines (SP 800-73-2 Compliance).
NPVIP accurate the PIV middleware to be accordant to: NIST Special Publication 800-73-2 Interfaces or Personal Identity Verification, Part 3: End-Point PIV Client Application Programming Interface.
atsec’s labs are accepted and accountant in the U.S. by the National Voluntary Laboratory Program (NVLAP) and operates laboratories with analysis scopes for the NIST PIV Program (NPIVP), as able-bodied as for Cryptographic Module testing (according to FIPS 140-2), algorithm validations and SCAP acquiescence testing.
atsec aswell is an accepted class for the GSA FIPS 201 Evaluation Program which runs a artefact approval affairs for PIV accompanying articles destined for the U.S. Government market.
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden and China.
atsec offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and acquiescence validation to the Payment Card Industry (PCI) Data Security Standard.
atsec aswell offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning services.
atsec works with arch all-around companies such as IBM, Apple, Microsoft, Hewlett-Packard, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
About charismathics
charismathics is a all-around baton in character administration software. Its arch product, the charismathics Smart Security Interface (CSSI), makes it cost-effective and simple for enterprises to accommodate assorted affidavit solutions into a single, cellophane interface. Since 2003, charismathics has pioneered the acreage of Public Key Infrastructure (PKI), introducing the aboriginal PKI applicant to abutment Trusted Platform Modules (TPM) and the aboriginal PKI applicant to abutment pre-boot environments. charismathics offers aegis articles and PKI consulting in a array of industries including cyberbanking and finance, healthcare, telecommunications, security, government and PC manufacturing. For added information, appointment www.charismathics.com.
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
The affidavit for the acknowledged validation – of the charismathics Smart Security Interface PIV, Version 2.1.0.9 (certificate no. 12) – was issued on October 23rd and can be begin on the Middleware Validation List on the NPIVP website.
csrc.nist.gov/groups/SNS/piv/npivp/validation_lists/SP800...
Apostol Vassilev, Laboratory Manager for atsec’s CST lab, commented: "atsec succeeded to complete auspiciously the aboriginal PIV Middleware validation testing according to NIST's SP 800-73-2. Being the aboriginal class to plan beneath this new accepted carries a lot of challenges and hidden costs consistent from the changes in the ambit of testing and the agnate tools. I am actual appreciative that atsec managed to acknowledge to these challenges with accomplishment and charge to efficiency. We were able to not alone bear a abundant acknowledgment of investment to our applicant but aswell to abutment NIST in convalescent the all-embracing validation action for the SP 800-73-2 accepted - a mark of arete by a accurate industry leader."
“atsec did an accomplished job in alive with NIST in accomplishing the validation of our CSSI PIV middleware,” said Sven Gossel, CEO of charismathics. “charismathics’ CSSI PIV middleware is the aboriginal to accomplish the SP 800-73-2 acceptance and atsec was key to authoritative this a success. Having the SP 800-73-2 acceptance continues the cardinal accession of our CSSI middleware as the arch PKI middleware solution.”
The new appropriate advertisement is an adapted abstruse blueprint for claimed character analysis (PIV) cards that are accepting phased in by U.S. federal departments and agencies for use by their advisers and contractors and is the aboriginal above amend back 2006 and is apprenticed by HSPSD#12 (The Homeland Security Presidential Directive 12 “Policy for a Common Identification Standard for Federal Employees and Contractors”).
atsec activated the PIV middleware in accordance with: the Derived Test Requirements (DTR) and Test Assertions (TA) in NIST Special Publication (SP) 800-85A-1 PIV Card Application and Middleware Interface Test Guidelines (SP 800-73-2 Compliance).
NPVIP accurate the PIV middleware to be accordant to: NIST Special Publication 800-73-2 Interfaces or Personal Identity Verification, Part 3: End-Point PIV Client Application Programming Interface.
atsec’s labs are accepted and accountant in the U.S. by the National Voluntary Laboratory Program (NVLAP) and operates laboratories with analysis scopes for the NIST PIV Program (NPIVP), as able-bodied as for Cryptographic Module testing (according to FIPS 140-2), algorithm validations and SCAP acquiescence testing.
atsec aswell is an accepted class for the GSA FIPS 201 Evaluation Program which runs a artefact approval affairs for PIV accompanying articles destined for the U.S. Government market.
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich (Germany) in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden and China.
atsec offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and acquiescence validation to the Payment Card Industry (PCI) Data Security Standard.
atsec aswell offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning services.
atsec works with arch all-around companies such as IBM, Apple, Microsoft, Hewlett-Packard, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
About charismathics
charismathics is a all-around baton in character administration software. Its arch product, the charismathics Smart Security Interface (CSSI), makes it cost-effective and simple for enterprises to accommodate assorted affidavit solutions into a single, cellophane interface. Since 2003, charismathics has pioneered the acreage of Public Key Infrastructure (PKI), introducing the aboriginal PKI applicant to abutment Trusted Platform Modules (TPM) and the aboriginal PKI applicant to abutment pre-boot environments. charismathics offers aegis articles and PKI consulting in a array of industries including cyberbanking and finance, healthcare, telecommunications, security, government and PC manufacturing. For added information, appointment www.charismathics.com.
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
atsec advice aegis association - atsec advice aegis completes SCAP testing for Microsoft System Center Configuration Manager
Austin, TX - atsec performed the FDCC Scanner validation testing for Microsoft System Center Configuration Manager 2007 Extensions for SCAP beneath the accepted SCAP standard.
“Microsoft recognizes the accent of acknowledging industry standards. For our accessible area and government customers, it is important to add abutment for SCAP-compliant advertisement formats. System Center Configuration Manager 2007 provides a able accumulating of amount functionalities for accouterments and software inventory, as able-bodied as able-bodied advertisement casework and the adeptness to define, deploy, and admeasurement agreement baselines in a managed environment. By abacus the SCAP advertisement architecture abutment to System Center Configuration Manager, organizations can accommodated FDCC mandates for acquiescence reporting,” said Jeff Wettlaufer, abstruse artefact manager, System Center business at Microsoft Corp.
The Microsoft aggregation formed agilely to accommodated the circuitous requirements of the FDCC (Federal Desktop Core Configuration) scanning tool. The System Center Configuration Manager Extensions for SCAP is an add-on to System Center Configuration Manager.
Steve Weingart, who leads the testing accomplishment for atsec, comments:
"Working with the Microsoft development aggregation was a abundant experience. At anniversary footfall the Microsoft aggregation absolved no accomplishment to ensure that the apparatus met the continued and circuitous account of NIST SCAP requirements. The best allotment about the apparatus is that it is chip into the Windows Server ambiance authoritative it acutely simple to map alloyed Windows XP and Windows Vista systems in a area to the adapted SCAP agreement for each. In addition, address administration from either the applicant or the server is easy."
The Information Security Automation Program/Security Content Automation Protocol (SCAP) is a U.S. government action to accredit automation and acclimation of abstruse aegis operations. atsec advice aegis is an accepted validation class beneath NVLAP (National Voluntary Laboratory Accreditation Program).
For added advice on the product, amuse accredit to
www.microsoft.com/systemcenter/configurationmanager/en/us....
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich, Germany in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden, and China.
atsec offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning casework as able-bodied as accepting a QSA and ASV.
atsec aswell offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada.
Atsec works with such arch all-around companies as IBM, Apple, Microsoft, Hewlett-Packard, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
“Microsoft recognizes the accent of acknowledging industry standards. For our accessible area and government customers, it is important to add abutment for SCAP-compliant advertisement formats. System Center Configuration Manager 2007 provides a able accumulating of amount functionalities for accouterments and software inventory, as able-bodied as able-bodied advertisement casework and the adeptness to define, deploy, and admeasurement agreement baselines in a managed environment. By abacus the SCAP advertisement architecture abutment to System Center Configuration Manager, organizations can accommodated FDCC mandates for acquiescence reporting,” said Jeff Wettlaufer, abstruse artefact manager, System Center business at Microsoft Corp.
The Microsoft aggregation formed agilely to accommodated the circuitous requirements of the FDCC (Federal Desktop Core Configuration) scanning tool. The System Center Configuration Manager Extensions for SCAP is an add-on to System Center Configuration Manager.
Steve Weingart, who leads the testing accomplishment for atsec, comments:
"Working with the Microsoft development aggregation was a abundant experience. At anniversary footfall the Microsoft aggregation absolved no accomplishment to ensure that the apparatus met the continued and circuitous account of NIST SCAP requirements. The best allotment about the apparatus is that it is chip into the Windows Server ambiance authoritative it acutely simple to map alloyed Windows XP and Windows Vista systems in a area to the adapted SCAP agreement for each. In addition, address administration from either the applicant or the server is easy."
The Information Security Automation Program/Security Content Automation Protocol (SCAP) is a U.S. government action to accredit automation and acclimation of abstruse aegis operations. atsec advice aegis is an accepted validation class beneath NVLAP (National Voluntary Laboratory Accreditation Program).
For added advice on the product, amuse accredit to
www.microsoft.com/systemcenter/configurationmanager/en/us....
About atsec advice security
atsec advice aegis is an independent, standards-based advice technology aegis casework aggregation that combines a business-oriented access to advice aegis with all-embracing abstruse ability and all-around experience. atsec was founded in Munich, Germany in 2000 and has all-encompassing all-embracing operations with offices in the U.S., Germany, Sweden, and China.
atsec offers defended cipher review, ISO/IEC 27001 ISMS consulting, and assimilation testing and scanning casework as able-bodied as accepting a QSA and ASV.
atsec aswell offers appraisal and testing casework arch to academic acceptance for IT aegis including appraisal beneath Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic bore and algorithm testing beneath the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada.
Atsec works with such arch all-around companies as IBM, Apple, Microsoft, Hewlett-Packard, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.
Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec advice security
(512) 615-7317
atsec advice aegis corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com
订阅:
博文 (Atom)