Cryptology Laboratory - its quality system and technical competence according to the ISO/IEC 17025 standard

Authors

DOI:

https://doi.org/10.26636/jtit.2004.4.264

Keywords:

cryptology laboratory, certification, accreditation, quality system, ISO/IEC 17025 standard

Abstract

A laboratory is an organization which operates a quality system, has technical competence, generates valid results and its quality system and technical competence are conformed and recognized. A cryptology laboratory operates in information technology security area, where cryptographic methods of information protection play main role. Appropriate confidence, correctness and effectiveness of security services is needed and may be achieved trough development, evaluation, accreditation and certification processes performed by competent and commonly recognized organizations like: laboratories, certification and accreditation bodies. We describe in the paper the accreditation and certification structure and the IT security framework and also the role of the cryptology laboratory in this structure and framework.

Downloads

Download data is not yet available.

References

[1] "General requirements for the competence of testing and calibration laboratories", ISO/IEC 17025 Standard, 1999.
View in Google Scholar

[2] "ITSEC (and ITSEM) - Information Technology Security Evaluation Criteria (and Methodology)", United Europe Commission, 1991-1993.
View in Google Scholar

[3] "CC (and CEM) - Common Criteria (and Evaluation Methodology) for Information Technology Security Evaluation", ISO/IEC 15408 Standard, 1999.
View in Google Scholar

[4] "UK Scheme Publications - UK IT Security Evaluation and Certification Scheme", Certification Body - CESG, Cheltenham, UK, 1999-2002.
View in Google Scholar

[5] "Quality Manual and Procedures Manuals of Cryptology Laboratory", Military Communication Institute, Zegrze, 2002-2004.
View in Google Scholar

[6] J. Pieprzyk, T. Hardjono, and J. Seberry, Fundamentals of Computer Security. Berlin: Springer-Verlag, 2003.
View in Google Scholar

[7] A. Menezes, P. van Oorschot, and S. Vanstone, Handbook of Applied Cryptography. Boca Raton Florida: CRC Press, 1996.
View in Google Scholar

[8] R. Wicik, "Properties of a block cipher based on extended Feistel network with large S-boxes", in Proc. Conf. RCMCIS'2000, Zegrze, Poland, 2000.
View in Google Scholar

[9] R. Wicik, "The statistical test for determining independence of pseudorandom bit sequences used in cryptographic systems", in Proc. Conf. RCMCIS'01, Zegrze, Poland, 2001.
View in Google Scholar

[10] M. Borowski and R. Wicik, "How to speed up a stream cipher", in Proc. Conf. RCMCIS'02, Zegrze, Poland, 2002.
View in Google Scholar

Downloads

Submitted

2023-04-09

Published

2004-12-30

Issue

Section

ARTICLES FROM THIS ISSUE

How to Cite

[1]
R. Wicik, “Cryptology Laboratory - its quality system and technical competence according to the ISO/IEC 17025 standard”, JTIT, vol. 18, no. 4, pp. 58–63, Dec. 2004, doi: 10.26636/jtit.2004.4.264.