Skip to main content

ISO/IEC TR 19791:2006

Withdrawn Date published:

Warning: Withdrawn Standard. This document has been replaced by:

Information technology — Security techniques — Security assessment of operational systems

ISO/IEC TR 19791:2006 provides guidance and criteria for the security evaluation of operational systems. It provides an extension to the scope of ISO/IEC 15408, by taking into account a number of critical aspects of operational systems not addressed in ISO/IEC 15408 evaluation. The principal extensions that are required address evaluation of the operational environment surrounding the target of evaluation, and the decomposition of complex operational systems into security domains that can be separately evaluated.

ISO/IEC TR 19791:2006 provides

  • a definition and model for operational systems;
  • a description of the extensions to ISO/IEC 15408 evaluation concepts needed to evaluate such operational systems;
  • a methodology and process for performing the security evaluation of operational systems;
  • additional security evaluation criteria to address those aspects of operational systems not covered by the ISO/IEC 15408 evaluation criteria.

ISO/IEC TR 19791:2006 permits the incorporation of security products evaluated against ISO/IEC 15408 into operational systems evaluated as a whole using ISO/IEC TR 19791:2006.

ISO/IEC TR 19791:2006 is limited to the security evaluation of operational systems and does not consider other forms of system assessment. It does not define techniques for the identification, assessment and acceptance of operational risk.

Get this standard Prices exclude GST
PDF ( Single user document)
$118.26 NZD
HardCopy
$152.17 NZD
Networkable PDF
Price varies
Preview only close
Prev {{ page }}/ {{ numPages }} Next
Preview only close
Prev {{ page }}/ {{ numPages }} Next
Pages: 165

Keep me up-to-date

Register to receive notifications when updates are made to this standard.

Related Information

Similar Standards

  • AS/NZS ISO/IEC 27001:2023

    Information security, cybersecurity and privacy protection – Information security management systems – Requirements

  • AS/NZS ISO/IEC 27002:2022

    Information security, cybersecurity and privacy protection — Information security controls

  • AS/NZS ISO/IEC 27551:2024

    Information security, cybersecurity and privacy protection – Requirements for attribute-based unlinkable entity authentication

  • BS 10754-1:2018

    Information technology. Systems trustworthiness, Governance and management specification

Preview only close
Prev {{ page }}/ {{ numPages }} Next
Preview only close
Prev {{ page }}/ {{ numPages }} Next
Pages: 165

ISO/IEC TR 19791:2006

Get this standard Prices exclude GST
PDF ( Single user document)
$118.26 NZD
HardCopy
$152.17 NZD
Networkable PDF
Price varies

Request to add this standard to your subscription

ISO/IEC TR 19791:2006

Price varies
Online library subscription

Click "Send request for subscription" to ask your Account Administrator to add this standard to your subscripiton.

Cancel