49.0k views
0 votes
You are reviewing the Common Criteria security standards. Which Common Criteria Evaluation Assurance Level (EAL) is the common benchmark for operating systems and products?

A) EAL 6
B) EAL 5
C) EAL 3
D) EAL 4
E) EAL 7

User Woolagaroo
by
7.5k points

1 Answer

3 votes

Final answer:

EAL 4 is recognized as the common benchmark for operating systems and products in the Common Criteria Evaluation Assurance Levels. It provides a balance between cost, assurance, and return on investment, while EAL 5, 6, and 7 offer higher assurance.

Step-by-step explanation:

The Common Criteria Evaluation Assurance Level (EAL) is a part of the Common Criteria international standard (ISO/IEC 15408) for information technology security evaluation. The EAL represents the depth and rigor of an evaluation, determining the trustworthiness of the security features of a product. Among the levels, EAL 4 is considered as the common benchmark for operating systems and products. It is often referred to as the level that is methodically designed, tested, and reviewed. Higher levels, such as EAL 5, EAL 6, and EAL 7, imply an even greater assurance, but EAL 4 is widely recognized as a balance between cost, assurance, and the return on investment.

User Georgi
by
8.4k points