111k views
3 votes
the framework for evaluating a system against a set of security requirements that supersedes tcsec and itsec is

User Lcltj
by
7.5k points

1 Answer

1 vote

Final answer:

The Common Criteria for Information Technology Security Evaluation (CC or CCITSE) is the framework that replaces TCSEC and ITSEC for evaluating the security of information technology systems.

Step-by-step explanation:

The framework for evaluating a system against a set of security requirements that supersedes TCSEC (The Trusted Computer System Evaluation Criteria) and ITSEC (Information Technology Security Evaluation Criteria) is the Common Criteria for Information Technology Security Evaluation (CC or CCITSE). This international standard (ISO/IEC 15408) provides a common set of guidelines and specifications for evaluating the security properties of IT products and systems. CC is more flexible than its predecessors, supporting the evaluation of various types of security properties and environments and allowing for the protection profiles that define a standard set of security requirements for specific types of products or systems.

User CrazyGeek
by
8.5k points