Used for assessing
the level of IT security a product provides, the ISO15408 international
standard sets a strict guideline for evaluating security policy,
program design documents, source code, manuals, and other factors.
A product qualifies for official designation as ISO/IEC15408
compliant only when an independent testing facility under the
International Common Criteria for Information Technology Security
Evaluation ("Common Criteria" or CC) has determined
that the product meets
CC
standards.
* The ISO15408 certification applies only to IT security capabilities.
This certification is NOT a product guarantee.