Certified Product: RSA Archer eGRC Platform v5.0

RSA, The Security Division of EMC
174 Middlesex Turnpike
Bedford, MA 01730
USA
Telephone: 1-888-539-3471

RSA Archer eGRC Platform v5.0 was the subject of a Common Criteria evaluation performed by the Common Criteria Evaluation Facility at EWA-Canada, located in Ottawa, Ontario, Canada. The evaluation was completed on 13 October 2011.

The evaluation of RSA Archer eGRC Platform v5.0 determined that this Information Technology (IT) product can be trusted, to an assurance level of EAL 2 augmented, to conform to the requirements of the associated security target. The augmentation consisted of the following: ALC_FLR.2- Flaw reporting procedures.

RSA Archer eGRC Platform v5.0 is an enterprise Governance, Risk and Compliance (eGRC) software solution that provides a platform for building applications to solve specific enterprise business needs and manages user interaction with the applications. Users are not permitted to read application code or data, write or modify application code or data, or execute specific application tasks unless they have been properly authorized to do so. User access is controlled at the system, application, record and field levels.

The scope of this evaluation is defined by the security target, which identifies assumptions made during the evaluation, the intended environment for the RSA Archer eGRC Platform v5.0, the IT security requirements to be met, and the level of confidence (evaluation assurance level) to which it is asserted that the RSA Archer eGRC Platform v5.0 satisfies its IT security requirements. Consumers are advised to verify that their operating environment is consistent with the security target, and to give due consideration to the recommendations stated in the certification report.

Product Type: Other Devices and Systems

Security Target: PDF (844KB) * Accessibility Notice * Official Languages Notice

Certification Report: HTML | PDF (44KB)

Certificate of Evaluation: HTML | PDF (140KB)