GB/T 20274.4-2008

Active

Information security technology Evaluation framework for information systems security assurance Part 4: Engineering assurance

信息安全技术 信息系统安全保障评估框架 第4部分:工程保障

Standard Type
GBT
ICS
35.040
CCS
L80
Status
Active
Issue Date
2008-07-18
Implementation
2008-12-01
Centralized Committee
国家标准委
Issuing Authority
中华人民共和国国家质量监督检验检疫总局、中国国家标准化管理委员会

Application Summary AI generated

This standard defines the engineering assurance requirements and evaluation criteria for information systems, focusing on the security aspects of system development, implementation, and maintenance processes. It is applied by organizations and evaluators in China to assess the security engineering practices of information systems, ensuring that security controls are integrated throughout the system lifecycle. The standard is used in contexts such as government, finance, and critical infrastructure sectors for certification and compliance audits.

Related Standards

Transparency note: The application summary and key sentences on this page were automatically generated by AI from the standard's original text. This content has not been human-verified and should not be used for compliance or regulatory purposes. Always refer to the official standard document from the issuing authority.