ISO 23195:2021

International Standard   Current Edition · Approved on 11 June 2021

Security objectives of information systems of third-party payment services

ISO 23195:2021 Files

English 40 Pages
Current Edition
BHD 87.46

ISO 23195:2021 Scope

This document defines a common terminology to be used in the context of third-party payment (TPP). Next, it establishes two logical structural models in which the assets to be protected are clarified. Finally, it specifies security objectives based on the analysis of the logical structural models and the interaction of the assets affected by threats, organizational security policies and assumptions. These security objectives are set out in order to counter the threats resulting from the intermediary nature of TPPSPs offering payment services compared with simpler payment models where the payer and the payee directly interact with their respective account servicing payment service provider (ASPSP).

This document assumes that TPP-centric payments rely on the use of TPPSP credentials and the corresponding certified processes for issuance, distribution and renewal purposes. However, security objectives for such processes are out of the scope of this document.

NOTE       This document is based on the methodology specified in the ISO/IEC 15408 series. Therefore, the security matters that do not belong to the TOE are dealt with as assumptions, such as the security required by an information system that provides TPP services and the security of communication channels between the entities participating in a TPP business.

Best Sellers

GSO 150-2:2013
 
Gulf Standard
Expiration dates for food products - Part 2 : Voluntary expiration dates
BH GSO 150-2:2015
GSO 150-2:2013 
Bahraini Standard
Expiration dates for food products - Part 2 : Voluntary expiration dates
GSO 9:2022
 
Gulf Technical Regulation
Labeling of prepackaged food stuffs
BH GSO 9:2023
GSO 9:2022 
Bahraini Technical Regulation
Labeling of prepackaged food stuffs

Recently Published

ISO 14505-1:2026
 
International Standard
Ergonomics of the thermal environment — Evaluation of thermal environments in vehicles — Part 1: Principles and methods for assessment of thermal stress
ISO 11228-3:2026
 
International Standard
Ergonomics — Manual handling — Part 3: Repetitive movements and exertions of the upper limbs
ISO 12236:2026
 
International Standard
Geosynthetics — Static puncture test (CBR test)
ISO 12179:2026
 
International Standard
Geometrical product specifications (GPS) — Surface texture: Profile — Calibration of contact (stylus) instruments