->

Cryptography - Lecture 23 - Trusted Computer Systems

This lesson introduces the idea of trusted computer systems which are evaluated against a standard. It then discusses risk assessment.







<- -> 1. Trusted Computer Systems

->






<- -> 2. Information System Security

->






<- -> 3. Issues with Trusted Computer Systems

->






<- -> 4. Evaluation Concepts and Relationships

->






<- -> 5. Evaluation Concepts and Relationships

->






<- -> 6. Trusted Computing Base

->






<- -> 7. Types of Secure Computing Systems

->






<- -> 8. Dedicated (Single-Level) Systems

->






<- -> 9. System-High

->






<- -> 10. Compartmented

->






<- -> 11. Multi-Level Systems

->






<- -> 12. Evaluation Process

->






<- -> 13. Security Evaluation Stages

->






<- -> 14. Apprroaching Security Evaluation Tasks

Defining Security Requirements
Risk Assessment
Theoretical Evaluation
Practical Testing
Examination of the Source Code
Penetration

->







<- -> 15. Risk Assessment

->






<- -> 16. Risk Assessment - Yellow Book

->






<- -> 17. Risk Rating Level Table

->






<- -> 18. Recommended Systems

->






<- -> 19. Risk Analysis - DSD Gateway Certification Guide

->






<- -> 20. Process

->






<- -> 21. Asset Identification

->






<- -> 22. Threat & Threat Likelihood Estimation

->






<- -> 23. Harm Estimation

->






<- -> 24. Risk Assessment

->






<- -> 25. Required Risk & Countermeasure Rating

->







<- -> 26. Summary

->







<- -> 27. Exercises







[
Back to CCS3 Lectures]
Lawrie.Brown@adfa.edu.au / 8 Feb 2001