Validated Product - StillSecure VAM V5.5Certificate Date: 26 January 2007 Validation Report Number: CCEVS-VR-06-0060 Product Type: Network Management Conformance Claim: EAL2 PP Identifiers: None CC Testing Lab: CygnaCom Solutions, Inc
PRODUCT DESCRIPTIONStillSecure VAM is a vulnerability management platform that identifies, tracks, and manages the remediation of network security vulnerabilities. StillSecure VAM systematically and regularly scans for network security vulnerabilities. Automated scans run on a regular, customizable schedule. The vulnerabilities found during scans are tracked and managed by VAM‘s exclusive Vulnerability Repair Workflow. VAM logs all scanning and repair activities and delivers a range of detailed reports targeted at auditors, managers, and IT staff members. SECURITY EVALUATION SUMMARYThe evaluation was carried out in accordance to the Common Criteria Evaluation and Validation Scheme (CCEVS) processes and procedures. The TOE, StillSecure VAM V5.5, was evaluated against the criteria contained in the Common Criteria for Information Technology Security Evaluation, Version 2.2. The evaluation methodology used by the evaluation team to conduct the evaluation is the Common Methodology for Information Technology Security Evaluation, Version 2.2. CygnaCom Solutions has determined that the product meets the security criteria in the Security Target, which specifies an assurance level of EAL2. A validator, on behalf of the CCEVS Validation Body, monitored the evaluation. The evaluation was completed in January 2007. ENVIRONMENTAL STRENGTHSStillSecure VAM provides the following security features:
|