![]()
Privacy Enhancing Technologies have been subject of interest both from the research community and from the industry and public.
Designing privacy enhancing products and managing privacy-conscious organizations requires to evaluate and define precise security requirements. However, the current privacy standards for the definition of security requirements (both for products and organizations) lack specific clauses needed for defining complex privacy requirements.
These
pages propose extensions to both these kinds of standards. Separate
proposals are made both for systems and products evaluation criteria
(ISO15408) and information security management (ISO17799).
|
Common Criteria and MIX networks New functional classes for implementing multilateral security requirements in the Common Criteria. |
Information Security Management The ISO17799 standard provides useful guidelines for organizing and managing information security. However, specific privacy-related guidelines are missing. This page describes proposals to enhance the standard. |
|
Links Organizations, Products, Manuals, CERTs, Bibliography, and many other Interesting pages to read... |
Resources Software, documentation, etc. |
(C) 1998-2002 by Giovanni Iachello. This page is covered by the GNU GPL Version 2 or later licence. Please contact me if you have problems reading this page.
Contact
Information

College
of Computing
Room:
TSRB 330
Georgia Institute of Technology
Atlanta, GA 30332-0280