The CCEVS is responsible for looking at security evaluations conducted by the Common Criteria Testing Laboratories (CCTLs), which are approved by CCEVS, and issuing common criteria certificates for those products. When an IT product receives the certificate and the validation report accompanying it, this indicates the product received an evaluation at a laboratory accredited using the common evaluation methodology to conform to the common criteria.
In addition, CCEVS keeps a list of all products that have received evaluations and validations in a validated products list. Therefore, if someone is interested in finding out whether a product has been evaluated and received a certificate, they could simply look on NIAP’s CCEVS website under the validated products list page.
Read More »
Get Techopedia delivered to your inbox!