ISO 23195:2021

مواصفة قياسية دولية   الإصدار الحالي · اعتمدت بتاريخ ١١ يونيو ٢٠٢١

Security objectives of information systems of third-party payment services

ملفات الوثيقة ISO 23195:2021

الإنجليزية 40 صفحات
الإصدار الحالي
80.11 BHD

مجال الوثيقة ISO 23195:2021

This document defines a common terminology to be used in the context of third-party payment (TPP). Next, it establishes two logical structural models in which the assets to be protected are clarified. Finally, it specifies security objectives based on the analysis of the logical structural models and the interaction of the assets affected by threats, organizational security policies and assumptions. These security objectives are set out in order to counter the threats resulting from the intermediary nature of TPPSPs offering payment services compared with simpler payment models where the payer and the payee directly interact with their respective account servicing payment service provider (ASPSP).

This document assumes that TPP-centric payments rely on the use of TPPSP credentials and the corresponding certified processes for issuance, distribution and renewal purposes. However, security objectives for such processes are out of the scope of this document.

NOTE       This document is based on the methodology specified in the ISO/IEC 15408 series. Therefore, the security matters that do not belong to the TOE are dealt with as assumptions, such as the security required by an information system that provides TPP services and the security of communication channels between the entities participating in a TPP business.

الأكثر مبيعاً

GSO 150-2:2013
 
مواصفة قياسية خليجية
فترات صلاحية المنتجات الغذائية - الجزء الثاني : فترات الصلاحية الاختيارية
BH GSO 150-2:2015
GSO 150-2:2013 
مواصفة قياسية بحرينية
فترات صلاحية المنتجات الغذائية - الجزء الثاني : فترات الصلاحية الاختيارية
BH GSO 2055-1:2016
GSO 2055-1:2015 
لائحة فنية بحرينية
الأغذية الحلال – الجزء الأول : الاشتراطات العامة للأغذية الحلال
GSO 2055-1:2015
 
لائحة فنية خليجية
الأغذية الحلال – الجزء الأول : الاشتراطات العامة للأغذية الحلال

اعتمدت مؤخراً

ISO/IEC 23009-9:2025
 
مواصفة قياسية دولية
Information technology — Dynamic adaptive streaming over HTTP (DASH) — Part 9: Redundant encoding and packaging for segmented live media (REaP)
ISO/IEC TR 27599:2025
 
مواصفة قياسية دولية
Information technology — Brain-computer interfaces — Use cases
ISO 4517:2025
 
مواصفة قياسية دولية
Physical vapor deposition (PVD) coatings — Contact angle measurement of metallic hydrophobic PVD coatings
ISO 15237:2025
 
مواصفة قياسية دولية
Coal — Determination of total mercury