Diverse groups share information assurance quandaries

Signal, Aug 2002 by McKendrick, Joseph

The best defense against legal action in the information technology arena is proof that management followed security best practices. The NSA is promoting a methodology for independent third-party testing of commercial information assurance technologies against commonly accepted standards. These standards are known as the International Common Criteria for Information Technology Security Evaluation. Beginning in July 2002, members of the U.S. national security community only may buy products that have been evaluated against these criteria.

The best approach to protecting data is multiple lines of defense that include a trusted operating system, a trusted database and rigorous management controls and auditing.

Additional information on Information Technology Incorporated is available on the World Wide Web at www.rubix.com.

Joseph McKendrick is a researcher and author who specializes in data security issues.

Copyright Armed Forces Communications and Electronics Association Aug 2002
Provided by ProQuest Information and Learning Company. All rights Reserved

 

BNET TalkbackShare your ideas and expertise on this topic

Please add your comment:

  1. You are currently: a Guest |
  2.  

Basic HTML tags that work in comments are: bold (<b></b>), italic (<i></i>), underline (<u></u>), and hyperlink (<a href></a)

advertisement
CXO UnpluggedSmart Business interviews on BNET

See and hear how senior level executives across the Asia Pacific are developing smart business ideas across a variety of sectors. The focus is on the future, and on how businesses need to evolve.

advertisement
  • Click Here
  • Click Here
  • Click Here
  • Click Here
advertisement

Content provided in partnership with ProQuest