A Common Criteria Based Approach for COTS Component Selection

By: Wes Lloyd


Component-based software engineering (CBSE) endeavors to enable software developers to develop quality software systems with less time and resources than traditional development approaches. Software components must be identified and evaluated in order to determine if they provide required functionality for systems being developed. Consideration of security requirements for component selection is of interest. This research considers how the Common Criteria (CC), an internationally recognized standard for security requirements definition and security assessment of IT systems, can be applied towards the development of component-based systems. A CC-based COTS component selection process is proposed which integrates activities of the CC for security requirements specification and evaluation. Research questions are presented for the evaluation of the process to establish its value for COTS component selection as well as to identify areas for improvement.

Wes Lloyd, “A Common Criteria Based Approach for COTS Component Selection”, Journal of Object Technology, Volume 4, no. 3 (April 2005), pp. 25-32, doi:10.5381/jot.2005.4.3.a4.

