Industry Keynote: Modernizing Common Criteria in the Age of AI (P11a)
Fixed and time-bound frameworks like Common Criteria (CC) face significant challenges in maintaining security assurance relevance amidst the rapid evolution of AI-enabled threats and software coding at scale. Industry needs to make room for AI-enabled approaches and evolve from point-in-time to real-time evaluation based on data and current-state security compliance requirements. While AI is transforming the broader technology landscape, the security certification industry remains constrained by legacy processes. Accelerated security assurance is key to enabling the constant evolution of security standards and access to secure, modern technology.
This session will address how AI is changing the overall environment and how we can apply tools to streamline re-evaluations for security patches, reduce the delay between development and deployment, while acknowledging the necessity of human oversight for complex standards conformance.
This is our opportunity to build a more secure future, while ensuring the evolution of important standards like Common Criteria.
