BS ISO/IEC 20243-2:2023
$198.66
Information technology. Open Trusted Technology ProviderTM Standard (O-TTPS) – Assessment procedures for the O-TTPS
Published By | Publication Date | Number of Pages |
BSI | 2023 | 64 |
PDF Catalog
PDF Pages | PDF Title |
---|---|
2 | undefined |
6 | Foreword |
8 | Preface |
10 | Trademarks |
11 | Introduction |
13 | 1 Scope 1.1 Conformance 1.2 Future Directions 2 Normative references |
14 | 3 Terms and definitions |
15 | 4 General Concepts 4.1 The O-TTPS |
16 | 4.2 Assessment Concepts: Relevance of Scope of Assessment and Selected Representative Products 4.3 Relevance of IT Technology Provider Categories in the Supply Chain |
17 | 5 Assessment Requirements 5.1 General Requirements for Assessor Activities 5.1.1 General Requirements for Evidence of Conformance |
20 | 6 Assessor Activities for O-TTPS Requirements |
21 | 6.1 PD_DES: Software/Firmware/Hardware Design Process |
22 | 6.2 PD_CFM: Configuration Management |
26 | 6.3 PD_MPP: Well-Defined Development/Engineering Method Process and Practices 6.4 PD_QAT: Quality and Test Management |
28 | 6.5 PD_PSM: Product Sustainment Management |
30 | 6.6 SE_TAM: Threat Analysis and Mitigation |
32 | 6.7 SE_VAR: Vulnerability Analysis and Response |
35 | 6.8 SE_PPR: Product Patching and Remediation |
37 | 6.9 SE_SEP: Secure Engineering Practices |
38 | 6.10 SE_MTL: Monitor and Assess the Impact of Changes in the Threat Landscape |
40 | 6.11 SC_RSM: Risk Management |
42 | 6.12 SC_PHS: Physical Security |
43 | 6.13 SC_ACC: Access Controls |
46 | 6.14 SC_ESS: Employee and Supplier Security and Integrity |
48 | 6.15 SC_BPS: Business Partner Security |
49 | 6.16 SC_STR: Supply Chain Security Training |
50 | 6.17 SC_ISS: Information Systems Security 6.18 SC_TTC: Trusted Technology Components |
52 | 6.19 SC_STH: Secure Transmission and Handling |
54 | 6.20 SC_OSH: Open Source Handling |
56 | 6.21 SC_CTM: Counterfeit Mitigation |
58 | 6.22 SC_MAL: Malware Detection |
60 | Annex A ASSESSMENT GUIDANCE |
61 | Annex B ASSESSMENT REPORT TEMPLATE |
62 | Bibliography |