openPR Logo
Press release

atsec information security Evaluates IBM z/OS V1R9 - Common Criteria Certification at EAL4+

03-13-2008 09:39 PM CET | IT, New Media & Software

Press release from: atsec information security

Left to right: Roland Trauner von IBM, Bernd Kowalski (BSI), Martina Koederitz (IBM) and Gerald Krummeck (atsec).

Left to right: Roland Trauner von IBM, Bernd Kowalski (BSI), Martina Koederitz (IBM) and Gerald Krummeck (atsec).

Munich, Germany - atsec information security recently completed the Common Criteria evaluation of IBM z/OS V1R9. The certificate was awarded by Germany's Federal Office for Information Security (BSI) to IBM at the CeBIT trade fair.

atsec performed the first z/OS evaluation, examining z/OS V1R6, in 2005 at evaluation assurance level 3 (EAL3), followed by re-evaluations of V1R7 in 2006 at EAL4 and V1R8 in 2007 with added security features. For z/OS V1R9, IBM followed its yearly cycle of evaluations for the current z/OS release, adding new security functions like increased support for certificate-based authentication, including support of PKCS#11 tokens and centralized certificate management; support for distribution of policies through policy agents; support for remote authorization and auditing via LDAP; AES encryption support in Kerberos; and support for audit log streams.

Operating system evaluation is the greatest test of competence in the field,. From early in its history as an evaluation laboratory, atsec has led the way in operating system evaluations under both the German BSI and U.S. CCEVS Schemes. Among the small set of evaluation laboratories with the experience and confidence to take on such projects, atsec information security has proven its competence as the world’s leading evaluator of large, complex operating systems.

The long experience and many successes of atsec’s evaluation staff have built the company’s industry-leading ability to delivery complex evaluations in enviably short time frames. This is important because in the world of Common Criteria evaluations, time is very definitely money. Sponsors begin to earn back their investment when the certification is finished – so there is tremendous value in working with a partner who can complete the process efficiently.

Gerald Krummeck, Common Criteria Lab Director for atsec information security GmbH, added: “We are very proud about this success: We managed to add security functionality important to IBM's customers to the most complex evaluation ever attempted under Common Criteria. Again, this certification demonstrates the success of our strategy to start an evaluation effort at a moderate level with a core functionality, and then move to higher assurance levels, while constantly adding valuable security functionality. This has now resulted in a certificate for a complete, real-world system with a level of assurance that customers require for their business-critical operations.”

Beyond its enviable record of successful, timely completion of complex evaluations, atsec has also built its reputation on the quality of its evaluation deliverables. atsec’s modus operandi uses the Common Criteria methodology to the advantage of the customer. Interim and final evaluation reports reveal thoughtful analysis of the content of document evidence presented providing real value to sponsors in the form of product and process improvements (not just a cursory look at the titles of documentation evidence and going well beyond simply filling out a checklist of requirements to achieve certification),. Looking at the real-world assurance evidence produced by developers as part of their regular development process has always been a feature of atsec’s evaluation process.

Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec information security
(512) 615-7317



atsec information security corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: +1-512-615-7300
Telefax: +1-512-615-7301
eMail: info@atsec.com

About atsec information security
atsec information security is an independent, standards-based information technology security services company that combines a business-oriented approach to information security with in-depth technical knowledge and global experience. atsec was founded in Munich (Germany) in 2000 and has extensive international operations with offices in the U.S., Germany, Sweden, and China.
atsec offers evaluation and testing services leading to formal certification for IT security including evaluation under Common Criteria schemes in the U.S., Germany, and Sweden; cryptographic module and algorithm testing under the Cryptographic Module Validation Program of the National Institute of Standards and Technology (NIST) in the U.S. and Communications Security Establishment Canada (CSEC) in Canada; and compliance validation to the Payment Card Industry (PCI) Data Security Standard.
atsec also offers secure code review, ISO/IEC 27001 ISMS consulting, and penetration testing and scanning services.
atsec works with leading global companies such as IBM, HP, Oracle, Cray,BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf.

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release atsec information security Evaluates IBM z/OS V1R9 - Common Criteria Certification at EAL4+ here

News-ID: 39750 • Views:

More Releases from atsec information security

atsec information security is now operating a Certification Body accredited according to ISO/IEC 17065
atsec information security is now operating a Certification Body accredited acco …
AUSTIN, TX - atsec is pleased to announce that atsec information security AB has been accredited as a certification body by SWEDAC, the national accreditation body in Sweden, to provide Common Criteria (CC) certifications of IT products. With over 20 years of experience as a CC evaluation lab, atsec has taken the step to become a CC certification body. We have an experienced and knowledgeable team, that has helped many national schemes
Call for Papers for the Second International Cryptographic Module Conference
Mark Your Calendar: ICMC 2014, November 19-21, Hilton Washington D.C., Rockville, MD ICMC brings together experts from around the world to confer on the topic of cryptographic modules, with emphasis on their secure design, implementation, assurance, and use, referencing both new and established standards such as FIPS 140-2 and ISO/IEC 19790. We are focused on attracting participants from the engineering and research community, test laboratories, government organizations, the procurers, deployers and administrators
atsec information security Opens South East Asia Office
atsec information security Opens South East Asia Office
Bangkok, Thailand – atsec information security is pleased to announce the opening of its atsec South East Asia (atsec SEA) office in Bangkok, Thailand. Since the year 2000, the atsec group of companies have been established experts in information security including Common Criteria, FIPS 140-2, PCI, ISO 27001, and hardware testing. As part of the atsec group of companies, atsec SEA’s objective is to promote information security and information assurance in
atsec completes FIPS 140-2 testing of Watchdata's WatchKey USB Token at Security Level 2
atsec completes FIPS 140-2 testing of Watchdata's WatchKey USB Token at Security …
Austin, TX - atsec information security is pleased to announce that its customer, Watchdata Technologies Pte Ltd. (branded as “Watchdata”), received a FIPS 140-2 validation certificate #1640 for the WatchKey USB Token under the CMVP (Cryptographic Module Validation Program) by the National Institute of Standards and Technology (NIST), USA and the Communication Security Establishment of Canada (CSEC). The successful validation result is published on the CMVP’s official website at: http://csrc.nist.gov/groups/STM/cmvp/validation.html The issued

All 5 Releases


More Releases for IBM

Cloud Microservices Market to Remain Competitive | Major Giants: AWS, CA Technol …
Advance Market Analytics released the research report of Global Cloud Microservices Market, offers a detailed overview of the factors influencing the global business scope. Global Cloud Microservices Market research report shows the latest market insights with upcoming trends and breakdown of the products and services. The report provides key statistics on the market status, size, share, growth factors of the Global Cloud Microservices. This Report covers the emerging player's data,
Global IBM Bluemix Services Market|ibm bluemix service status, ibm bluemix devop …
In order to study the various trends and patterns prevailing in the concerned market, Market Research Reports Search Engine (MRRSE) has included a new report titled “IBM Bluemix Services Market” to its wide online database. This research assessment offers a clear insight about the influential factors that are expected to transform the global market in the near future. Request for Sample Copy click here @ https://www.mrrse.com/sample/16385 The “IBM Bluemix Services Market – Global
Global Government Cloud Market 2018 Analysis by Players - Microsoft, IBM, Google …
Gen Market Insights published latest research on Global Government Cloud Market Research Report 2018 study major consideration after performing various different reasonable and immense analysis on Government Cloud industry. Top to bottom examination of Government Cloud Market is a vital thing for different partners like financial specialists, merchants, providers, CEOs, and others. Government Cloud Market Research Report 2018 provides an rare tool for analyzing the market in terms of strengths and
Global Government Cloud Market 2018 - IBM, Google, IBM, Oracle
Apex market reports, recently published a detailed market research study focused on the Government Cloud Market across the global, regional and country level. The report provides 360° analysis of Government Cloud Market from view of manufacturers, regions, product types and end industries. The research report analyses and provides the historical data along with current performance of the global Government Cloud industry, and estimates the future trend of Government Cloud market
Digital Defense, Inc. Receives IBM PartnerWorld’s Ready for IBM Security Intel …
SAN ANTONIO, TX (April 17, 2017) – Digital Defense, Inc., a leading provider of Vulnerability Management as a Service (VMaaS™), today announced it has received IBM PartnerWorld’s Ready for IBM Security Intelligence designation for its Frontline™ Vulnerability Manager. As a result, Digital Defense’s Frontline Vulnerability Manager has been validated to integrate with IBM Security products to help better protect customers around the world. "We're very excited to combine IBM's industry
direct/ datango validated by IBM as Ready for IBM WebSphere Portal Software
datango´s Electronic Performance Support System provides benefits for IBM WebSphere Portal implementations Berlin, October 24, 2007 - datango AG, provider of eLearning and Electronic Per¬formance Support (EPSS) solutions, has been validated for IBM WebSphere Portal software and has earned the "Ready for IBM WebSphere Portal Software" emblem for its datango knowledge suite (dks). The Ready for WebSphere Portal Software emblem means that IBM WebSphere customers and business partners can integrate to