Review on the Competency of Evaluators at Information Technology Product Security Testing Laboratory Based on SNI ISO/IEC 19896–3:2018
- DOI
- 10.2991/978-94-6463-216-3_15How to use a DOI?
- Keywords
- Competency; Evaluators; SNI ISO/IEC 19896–3:2018
- Abstract
Comparison between the results of the safety evaluation of the Testing Laboratory is permitted in the ISO/IEC 15408 series. However, the testing laboratory must be able to guarantee the comparability of the evaluation results as a basis for mutual recognition, one of which is by ensuring that the competence of the evaluator has met the requirements in SNI ISO/IEC 19896–3:2018: Knowledge, skills, and effectiveness requirements for ISO/IEC 15408 evaluators. This research aims to determine the state of competence of evaluators at the Information Technology Product Security Testing Laboratory that implements a testing scheme SNI ISO/IEC 15408:2014. This research was conducted using gap analysis with a quantitative approach. Data collection was carried out using a questionnaire instrument according to the SNI ISO/IEC 19896–3:2018 clauses. The output describes factual conditions so that recommendations for the development of technical competence of the evaluators can be given to support IT Product Security Testing Service. The findings of all aspects of evaluators’ competence are in the high category. Current conditions indicate that the education competence has the highest competency score, 80% out of 100% competency level. However, Testing Laboratory Management still must make efforts to improve the competence of evaluators, especially in the aspects of knowledge and skills of specific technology testing; and testing skills, particularly in the ACO class.
- Copyright
- © 2023 The Author(s)
- Open Access
- Open Access This chapter is licensed under the terms of the Creative Commons Attribution-NonCommercial 4.0 International License (http://creativecommons.org/licenses/by-nc/4.0/), which permits any noncommercial use, sharing, adaptation, distribution and reproduction in any medium or format, as long as you give appropriate credit to the original author(s) and the source, provide a link to the Creative Commons license and indicate if changes were made.
Cite this article
TY - CONF AU - Ratih M. Arti AU - Novianto B. Kurniawan AU - Astrid M. Sugiyana PY - 2023 DA - 2023/07/31 TI - Review on the Competency of Evaluators at Information Technology Product Security Testing Laboratory Based on SNI ISO/IEC 19896–3:2018 BT - Proceedings of the 3rd International Conference on Business and Engineering Management (ICONBEM 2022) PB - Atlantis Press SP - 192 EP - 202 SN - 2352-5428 UR - https://doi.org/10.2991/978-94-6463-216-3_15 DO - 10.2991/978-94-6463-216-3_15 ID - Arti2023 ER -