certification standards
Common Criteria certification levels

The Common Criteria certification standard has mostly overcome the older certification standards such as ITSEC or FIPS. Lately, most of the world security tokens are therefore taken to Common Criteria certifications only, whereas FIPS is a requirement, which is currently used mainly by the US government. For all other token applications, the Common Criteria standard allows provision of transparency, product comparisons and reliability in security terms.
CC evaluation reports are mainly published on the websites of the German and French regulation authorities, BSI and ANSSI.
charismathics solutions are built with standard components, certified with a security level according to their purpose. All components conform to the standards and certification processes defined by the Common Criteria. Please contact us for more information for a current list of Common Criteria compliant components.
For more information regarding the certification see the portal of Common Criteria.
ITSEC certifcation
Under the UK ITsec Scheme (United Kingdom Information Technology Security Evaluation and Certification Scheme), the security features of IT systems and products are tested independently of suppliers to identify logical vulnerabilities. This type of testing is known as security evaluation and it is carried out against standardized criteria to a formalized methodology. The criteria lay down a number of degrees of rigor known as Assurance Levels. Certificates are issued by the Scheme for products meeting the requirements for a claimed level of assurance. United Kingdom certificates are recognized in many countries of the world.
charismathics solutions are built with standard and certified components. charismathics conforms to ITSEC certification when built with ITSEC certified components.
For more information regarding the certification see CESG website, the National Technical Authority for Information Assurance.
FIPS certification
charismathics solutions are built with standard and certified components including those carrying the FIPS certification of the US National Institute of Standards and Technology. charismathics smart security interface PIV is FIPS 201 compliant. The plug’n’crypt® smart tokens are manufactured upon request with special FIPS certified components. Please contact us for more information for a current list of compliancies.
For more information regarding the certification see the NIST website.
PIV certification
FIPS 201 incorporates three specifications related to Personal Identity Verification (PIV) of Federal Employees and contractors. charismathics smart security interface PIV© has been successfully PIV evaluated.
For more information regarding the certification see the NIST website.
local government specifications and other requirements
charismathics solutions support the local signature laws in its hardware, software and components. Conformity to local signature laws per country or region can be attained upon request.
- Germany
charismathics products are compliant and certified to be used with the German government standard SigG (Signaturgesetz), set by RegTP.
For more information see www.bsi.bund.de/zertifiz and www.t-systems-zert.com.
- Italy
charismathics products are compliant and certified to be used with the Italian government standard CNS (Carta Nazionale dei Servizi), defined by DigitPA. They also are an integral part of the solutions in other projects across Italy including CartaSi, and the National Health Card.
charismathics support 
phone | +49 (89) 3090 6700 |
fax | +49 (89) 3090 6729 |
please send us an e-mail:
support
charismathics.com

































