Related Products
|
System Security Engineering Services
More than ever, governments, businesses, and industries depend on safe and secure information systems to perform mission-critical functions. It is essential that security plays an important role in the life cycle of key systems—from inception to decommissioning. By treating security as an integral part of the design and development phases of a new system, you not only ensure the security of the implemented system, but you also eliminate the expensive retrofit of security into a system after it is completed.
The ARINC System Security Engineering (SSE) services provide complete support for all system life cycle phases, so that security-related activities are incorporated into the most optimal phase. We work with you to tailor these services to your specific business and application needs, taking into account the size of the system and its life cycle.
The ARINC SSE services include:
- Security Policy Development: We develop, deploy, review, and enforce security policies that satisfy business objectives and government regulations.
- Security Requirements Traceability Matrix (RTM): We develop RTMs that trace requirements from source documents to test document.
- Security Architecture: We develop security architectures and conduct architecture reviews.
- Threats, Vulnerabilities, Risks, and Countermeasures: We identify principal threats that might be faced by the system; categorize vulnerabilities and residual risks; perform risk and vulnerability assessments; and identify and implement countermeasures.
- Network Assessments: We assess network security policies and server and router Access Control Lists (ACLs); scan and probe Transmission Control Protocol (TCP) and User Datagram Protocol (UDP) ports; and conduct penetration testing.
- Contract Assessments: We perform contract and statement of work (SOW) assessments.
- Design Reviews: We support all design phase reviews.
- Testing: We support system and subsystem testing.
- Disaster Recovery: We develop business continuity and disaster recovery plans for critical assets.
- Security Certification and Accreditation (C&A): We provide C&A services that meet key military and commercial security guidelines, directives, and instructions.
ARINC SSE services help you take a pragmatic approach to system security, enabling you to determine which risks are most serious and make cost-effective countermeasure decisions.
|
|
|