Common Criteria (ISO/IEC 15408)
FIPS 140-2
Cryptographic Algorithm Testing
SCAP
NPIVP Testing
Biometrics Testing
GSA PIV Evaluation (FIPS 201)
ISO/IEC 27001
SOX and Euro-SOX
FISMA Certification Support
HIPAA and HITECH
NASPO
VTDR for GSA FIPS 201
Embedded Systems
Hardware Security Testing and Analysis
Penetration Testing
PCI Consulting
US Export Control for Cryptography
Training
FIPS 140-2 Testing and Consulting Resources
FIPS 140-2, short for the U.S. Federal Information Processing Standard 140-2, Security Requirements for Cryptographic Modules, specifies requirements related to the secure design and implementation of cryptographic modules that provide protection for sensitive or valuable data.
Contact:
Apostol Vassilev is the laboratory manager for atsec's CST lab.
+1 512-615-7300
+1 512-615-7301
cst-info@atsec.com
Authoritative Website:
Cryptographic Module Validation Program (CMVP)
FAQ & RFI:
FIPS 140-2 FAQ
FIPS 140-2 Request for Information
Support Documents:
How to Choose the Right CST Lab
List of documentation needed for FIPS 140-2
FIPS 140-2 Derived Test Requirements XML templates
atsec list of FIPS 140-2 certificates
atsec list of CAVP certificates
FIPS 140-2 quick reference
FIPS 140-2 algorithm checklist
Algorithm Dependency Cheat Sheet
atsec CST presentation
atsec FIPS 140-2 introduction
atsec Publications:
| Topic |
Event/ Medium |
Author/ Speaker |
|---|---|---|
| FRITSA: Do You Understand How all of your IT Security Assurance Efforts fit Together? |
ISSA Austin | Fiona Pattinson |
| atsec Newsletter China 12/2011 |
Newsletter | various |
| From FIPS 140-2 to CC |
12th ICCC | Mao |
| atsec Newsletter USA 10/2011 |
Newsletter | various |
| atsec Newsletter China 06/2011 |
Newsletter | various |
| atsec Newsletter USA 07/2011 |
Newsletter | various |
| FIPS 140-2 Validation for Project Managers and Developers |
Presentation | Fiona Pattinson |
| atsec Newsletter Germany 04/2011 |
Newsletter | various |
| atsec Newsletter USA 02/2011 |
Newsletter | various |
| atsec Newsletter USA 12/2010 |
Newsletter | various |
| Building the IBM 4758 Secure Coprocessor |
IBM Research Publications | Weingart et al. |
| atsec Newsletter Germany 09/2010 |
Newsletter | various |
| atsec Newsletter USA 07/2010 |
Newsletter | various |
| How Does Your Company’s Identity Security Compare with that of the Federal Government? |
ISSA Meeting | Auston Holt |
| Secure Coding Guidelines |
White paper | Shiralkar, Grove |
| FIPS 140-2 DTR XML Templates |
ZIP archive | Masino |
| Do Federal Security Regulations help? | Opinion, Information Security, p.10, January 2007 | A. Vassilev |
| Physical Security Devices for Computer Subsystems: A Survey of Attacks and Defenses 2008 |
Whitepaper | Weingart |
| Business Use of Cryptography |
The Copenhagen Hearing, 1998 | Kurth |
Press Releases:
| Date | News article |
|---|---|
| 2011-12-02 | atsec completes FIPS 140-2 testing of Watchdata's WatchKey USB Token at Security Level 2 atsec information security is pleased to announce that its customer, Watchdata Technologies Pte Ltd. (branded as “Watchdata”), received a FIPS 140-2 validation certificate #1640 for the WatchKey USB Token under the CMVP (Cryptographic Module Validation Program) by the National Institute of Standards and Technology (NIST), USA and the Communication Security Establishment of Canada (CSEC). |
| 2011-11-23 | atsec Completes FIPS 140-2 Testing for MIIKOO at Security Level 3 atsec information security is proud to announce that its customer, Pierson Capital Technology LLC (branded as “Pierson”), received a FIPS 140-2 validation certificate #1634 for their MIIKOO product. |
| 2011-11-04 | atsec information security at the Milcom 2011 Conference in Baltimore atsec will once again be attending and hosting a booth at the international military communications MILCOM Conference (November 7th through November 10th, booth 1506). MILCOM’s theme this year is "Networks … Attaining the Value. |
| 2011-09-27 | IBM’s® z/OS® Version 1 R. 12 System SSL Cryptographic Module Receives FIPS 140-2 Certification IBM’s® z/OS® Version 1 R. 12 System SSL Cryptographic Module recently received FIPS 140-2 |
| 2011-09-23 | Steve Weingart to Speak at the Non-Invasive Attack Testing Workshop in Nara, Japan atsec's principal consultant Steve Weingart will be a panelist at the Non-Invasive Attack Testing Workshop (September 25th – 27th, 2011) in Nara, Japan l. Weingart was asked to join the panel as a laboratory representative discussing the practicality of non-invasive testing and how it fits into the conformance testing and business requirements of the laboratories. He will give a short introduction of the subject matter before joining the panel discussion. |
More news can be found in on our news page.
Related Services:
Cryptographic Algorithm Testing
GSA Personal Identity Verification Testing (FIPS 201)
