首页> 外文会议>International Conference on Information and Communication Technology >Security Protection Profile on Smart Card System Using ISO 15408 Case Study: Indonesia Health Insurance Agency
【24h】

Security Protection Profile on Smart Card System Using ISO 15408 Case Study: Indonesia Health Insurance Agency

机译:智能卡系统安全保护简介使用ISO 15408案例研究:印度尼西亚健康保险机构

获取原文

摘要

Indonesia Health Assurance Agency also called BPJS is the most important part of the Indonesian people as a health insurance agency. BPJS want to improve the quality of healthcare by applying information technology. One way to improve the quality of service BPJS is implementing smart card technology. this new system, BPJS smart card system, is consisted of two part, there are a smart card and smart card reader. Beside it can be searching BPJS members faster and easier than before (offline system), every card member has a temporary storage enough to save nominal of their own insurance premium. Therefore, smart card system needs security requirements to make sure data in every card member is still secure and confidential when implementing this smart card technology. With that problem, this research creates security design proposal from Protection Profile document by evaluating smart card system of BPJS using Common Criteria Framework (ISO 15408). And then this methodology research is using (ISO 15446) to guide the development of Protection Profile document. Common Criteria Framework for the security of smart card make security design becomes more systematic. This research is consisting of 3 steps, first analyzing threats, second designing security objectives, the last designing security function requirements. Threats assessment and analysis in this research has result 10 threats. From previous step then designed 12 points security objectives. At third step, the security functional requirements need to be analyzed and founded, has 36 security functional requirements from 12 points security objectives before. Prototype has built based on all of security functional requirements that already recommended. The evaluate result shows that all of system use case has been tested according system functional requirement.
机译:印尼卫生保障局还呼吁BPJS是印尼人的医疗保险机构的最重要的部分。 BPJS希望通过应用信息技术,以提高医疗质量。提高服务BPJS的质量的方法是实施智能卡技术。这个新系统,BPJS智能卡系统,是由两个部分组成的,有智能卡和智能卡读卡器。除了它可以搜索BPJS成员比以前(离线系统)更快,更容易,每个卡件具有临时存储足以拯救标称自己的保险费。因此,智能卡系统需要安全要求每卡会员,以确保数据实现这个智能卡技术时仍然是安全和保密的。这一问题,本研究采用通用标准框架(ISO 15408)评价BPJS的智能卡系统创建从Protection Profile文档的安全性设计方案。然后,这种方法的研究是使用(ISO 15446),以指导保护档案文件的编制。对智能卡进行安全设计的安全通用准则框架变得更加系统化。这项研究是由3个步骤,首先分析威胁,第二设计的安全目标,最后的设计安全功能的要求。在这项研究中威胁评估和分析结果有10个威胁。从前面的步骤,然后设计了12分安全目标。在第三步中,安全功能要求需要加以分析,并成立,有来自前12分安全目标36安全功能要求。原型基于所有的安全功能要求已经建议建。的评价结果​​表明,所有的系统用例已经根据系统的功能要求测试。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号