A. Ekelhart, S. Fenz, G. Goluch, E. Weippl:
"Ontological Mapping of Common Criteria's Security Assurance Requirements";
Vortrag: IFIP TC 11 22nd International Information Security Conference (IFIPSEC2007), Sandton, South Africa; 14.05.2007 - 16.05.2007; in: "Proceedings of the IFIP TC 11 22nd International Information Security Conference, IFIPSEC2007", (2007), S. 85 - 95.

The Common Criteria (CC) for Information Technology Security Evaluation provides comprehensive guidelines for the evaluation and certification of IT security regarding data security and data privacy. Due to the very complex and time-consuming certification process a lot of companies abstain from a CC certification. We created the CC Ontology tool, which is based on an ontological representation of the CC catalog, to support the evaluator at the certification process. Tasks such as the planning of an evaluation process, the review of relevant documents or the creating of reports are supported by the CC Ontology tool. With the development of this tool we reduce the time and costs needed to complete a certification.

