Algorithmization for calculating the security assessment of AIS operating systems of internal affairs bodies, developed on the basis of an analysis of security requirements GOST R ISO/IEC 15408 and possible threats
A. I. Yangirov, E. A. Rogozin, O. I. Bokova, S. B. Akhlyustin
{"title":"Algorithmization for calculating the security assessment of AIS operating systems of internal affairs bodies, developed on the basis of an analysis of security requirements GOST R ISO/IEC 15408 and possible threats","authors":"A. I. Yangirov, E. A. Rogozin, O. I. Bokova, S. B. Akhlyustin","doi":"10.21822/2073-6185-2023-50-3-167-171","DOIUrl":null,"url":null,"abstract":"Objective . The article provides a generalized algorithmization of the processes necessary for developing software for assessing the security of operating systems of automated information systems of internal affairs bodies of the Russian Federation. Method . The research was carried out based on the method of analyzing possible threats to the security of operating systems, as well as the requirements of the GOST R ISO/IEC 15408 standard. Result . The result of the automated system for calculating the security indicator of the analyzed OS is one of the specified criteria for indicators of the degree of security of the OS. By comparing the obtained indicator, the corresponding result is output. Conclusion . The authors provide a generalized algorithmization of the processes necessary for developing software for assessing the security of the AIS OS of the Russian Federation ATS.","PeriodicalId":31714,"journal":{"name":"Vestnik Dagestanskogo Gosudarstvennogo Tehniceskogo Universiteta Tehniceskie Nauki","volume":"22 2","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2023-10-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Vestnik Dagestanskogo Gosudarstvennogo Tehniceskogo Universiteta Tehniceskie Nauki","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.21822/2073-6185-2023-50-3-167-171","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
Objective . The article provides a generalized algorithmization of the processes necessary for developing software for assessing the security of operating systems of automated information systems of internal affairs bodies of the Russian Federation. Method . The research was carried out based on the method of analyzing possible threats to the security of operating systems, as well as the requirements of the GOST R ISO/IEC 15408 standard. Result . The result of the automated system for calculating the security indicator of the analyzed OS is one of the specified criteria for indicators of the degree of security of the OS. By comparing the obtained indicator, the corresponding result is output. Conclusion . The authors provide a generalized algorithmization of the processes necessary for developing software for assessing the security of the AIS OS of the Russian Federation ATS.
在分析GOST R ISO/IEC 15408的安全要求和可能的威胁的基础上,制定了计算内务机构AIS操作系统安全评估的算法
目标。本文提供了开发用于评估俄罗斯联邦内务机构自动信息系统操作系统安全性的软件所需的过程的一般算法。方法。本研究是基于分析操作系统可能面临的安全威胁的方法,以及GOST R ISO/IEC 15408标准的要求进行的。结果。所分析的操作系统安全指标自动计算系统的结果是衡量操作系统安全程度的指定指标之一。通过比较得到的指标,输出相应的结果。结论。作者提供了开发用于评估俄罗斯联邦ATS的AIS操作系统安全性的软件所需的过程的广义算法。