Most recent

INCITS/ISO/IEC 27034-7:2018 (R2024)

Information technology - Application security - Part 7: Assurance prediction framework (Identical National Adoption of ISO/IEC 27034-7:2018)

Describes the minimum requirements when the required activities specified by an Application Security Control (ASC) are replaced with a Prediction Application Security Rationale (PASR). The ASC mapped to a PASR define the Expected Level of Trust for a subsequent application. In the context of an Expected Level of Trust, there is always an original application where the project team performed the activities of the indicated ASC to achieve an Actual Level of Trust. The use of Prediction Application Security Rationales (PASRs), defined by this document, is applicable to project teams which have a defined Application Normative Framework (ANF) and an original application with an Actual Level of Trust.

CONTENT PROVIDER
InterNational Committee for Information Technology Standards [incits]

Included in Packages
This standard is also available in these packages:
Document History
Amendments & Corrections
We have no amendments or corrections for this standard.