[CygnaCom Solutions logo]
Login    Contact Us   
  Products   Services   Corporate   Labs   Careers
Search
Security Testing and Evaluation Labs
 
 
Security Evaluation Laboratory
 
Overview (pdf)
 
Common Criteria
 
Evaluated Products
 
CC Assurance Index
 
CC Function Index
 
 
Cryptographic Equipment Assessment Laboratory
Careers
 
Contact Us


Entrust Home
Security Testing
 

Security Testing and Evaluation Labs

Security Evaluation Laboratory (SEL)


Related Links
Brochure:
CygnaCom Testing Laboratories
A Certified NIAP CC Testing Laboratory (CCTL)

  • Credentials: First TTAP lab • Original CC lab • Expert Staff • more...
  • Services: EAL1-7 evaluations • Evidence preparation • Consulting • Training • more...
  • Experience: Orange Book & CC • Advanced CC • more...
  • Expertise: PKI • Cryptography • Guards • Hardware • Network devices • Chips • Databases • more...
  • Evaluations: Operating Systems • Firewalls • EAL5 • PPs • more...
  • Contact: (703) 270-3563 • eMailmore...
Common Criteria Credentials - CygnaCom's SEL is a certified National Information Assurance Partnership (NIAP) Common Criteria Testing (CCTL) Laboratory, authorized to conduct product evaluations according to the Common Criteria (CC) (ISO/IEC 15408) and the Common Evaluation Methodology (CEM) under the U.S. Scheme. NIAP is a collaboration of the National Institute of Standards and Technology (NIST) and the National Security Agency (NSA). The SEL was in the original group of CCTLs to be certified. Earlier, CygnaCom's SEL was the first commercial laboratory to be authorized by the NSA to perform security evaluations of computer products under the NIAP Certified Trust Technology Assessment Program (TTAP), using the US Government's Trusted Computer System Evaluation Criteria (TCSEC), Classes C2 and B1, and was the first laboratory to complete a security product evaluation under TTAP. The evaluation of ITT Industries' Dragonfly Guard, a network security device that provides encryption, source authentication, integrity, and discretionary and mandatory access control, was completed in less than 3 months.

See our SEL Evaluated Products page for a complete list of products that have been or are being evaluated in our CCTL.

Services - The SEL offers a full range of NIAP accredited services. These consist of evaluating Protection Profiles (PPs), Security Targets (STs), and IT products (called Targets of Evaluation, TOEs, in CC terminology), at EAL1 through EAL4. Additional services include evaluations at EAL5 through EAL7 and above. Each of these activities is conducted under various levels of U.S. government participation - a requirement of a NIAP accreditation (and U.S. government recognition, in the cases of EAL 5 through EAL7 evaluations). PPs and STs are the security requirement specifications required by the CC for evaluations.

In addition to the NIAP accredited services, the SEL offers guidance and assistance in preparing for Common Criteria evaluation, including help in preparing criteria and documentation. The SEL also offers general security consulting services and CC training.

The SEL can also help clients navigate computer security standards and evaluation requirements including:

  • Product architecture, design, implementation, and documentation review
  • Training for security product design and development teams
  • Security consulting in product design and engineering
Experience - CygnaCom's security engineers include former TCSEC senior evaluators, team leaders, and a Technical Review Board (TRB) member. Cygnacom's SEL has advanced expertise in writing Protection Profiles and Security Targets, the security requirement specifications required by the CC for evaluations. A Cygnacom engineer wrote the Security Target used for the first successful TTAP CC evaluation.

CygnaCom staff have experience with high assurance product evaluations and formal specification at A1 (Logical Co-processing Kernel (LOCK), Gemini Trusted Network Processor (GTNP), SACDIN security kernel for a multi-level secure message communication system) and at B3 (Wang XTS-300 Operating System). (A1 is an Orange Book criterion similar to CC EAL7 and B3 is a criterion similar to EAL6.) They are also experienced in assessing high assurance guards (Secure Network Server (SNS) Guard and Defense Messaging System (DMS) Guard).

Expertise - CygnaCom SEL staff have domain expertise in PKI (Public Key Infrastucture), cryptography, operating systems, high assurance guards, network devices, standards conformance, and databases.

Contact - If you would like additional information about CygnaCom's SEL laboratory and related services, please call us at (703) 270-3563 or eMail us at selinfo@cygnacom.com.

 
 
   Privacy Statement    Legal    Contact Us