|
Secure Computing by Design
| ||
ASL is focused on making commercial IT products more robust, more secure, and more useful to end users, especially users with mission critical needs, such as is required by the US Department of Defense. ASL can help incorporate state-of-the-art security architectures into commercial and custom products in order to meet high robustness requirements and to obtain the necessary certifications for use in critical applications. Our specialities include operating systems and networks (including MLS variants), real-time operating systems (RTOS) (including MILS variants), cross-domain products, firewalls, and others. These products often contain critical hardware components on which the security of the whole product depends. ASL's expertise in computing hardware allows us to work easily with design engineers to address all aspects of a solution. ASL conducts IT security research for the US Air Force Research Laboratory's Anti-Tamper / Software Protection Initiative (AT/SPI), among others. We developed a prototype SMM Compute Server that provides a robust execution environment in a PC that allows critical programs to be protected from corrupted kernels, hypervisors, and applications. ASL helps engineer commercial products to use accepted and evaluatable mechanisms, assists vendors in certifying products against the CC and FIPS 140-2 requirements, and provides new and innovative security solutions to industry and government. ASL helps product vendors prepare for Common Criteria evaluations and for NIST FIPS 140-2 Crytographic certifications. ASL consults to certified Common Criteria Testing Labs to evaluate products against DoD Protection Profiles (security criteria). We specialize in high assurance evaluations (those greater than EAL4). |
||