{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,28]],"date-time":"2025-09-28T20:27:38Z","timestamp":1759091258439,"version":"3.41.2"},"reference-count":11,"publisher":"Emerald","issue":"2","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2010,6,8]]},"abstract":"<jats:sec>\n                  <jats:title>Purpose<\/jats:title>\n                  <jats:p>The level of security of home information systems can be described as their capacity to resist all the accidental or deliberate malicious activities based on the evaluation assurance levels (EAL) as defined in international standards. The purpose of this paper is to propose a security guideline tool for home users based on the implementation of a protection profile (PP) for home user systems.<\/jats:p>\n               <\/jats:sec>\n               <jats:sec>\n                  <jats:title>Design\/methodology\/approach<\/jats:title>\n                  <jats:p>The application was developed in three basic steps. First, a PP for home user systems was created on the basis of the international standard ISO\/IEC 15408. Then, the paper created a knowledge base including the PP information, as well as a security policy including other international standards, as mentioned above. Finally, the paper created a web application tool to be used as a security guideline for home users.<\/jats:p>\n               <\/jats:sec>\n               <jats:sec>\n                  <jats:title>Findings<\/jats:title>\n                  <jats:p>This tool is developed in order to support users to understand the threats which affect their environment and select the appropriate security policy. By using this tool, users can access information about international standards in accordance to their level of knowledge.<\/jats:p>\n               <\/jats:sec>\n               <jats:sec>\n                  <jats:title>Research limitations\/implications<\/jats:title>\n                  <jats:p>The authors created a tool based on EAL4. In the future, tools based on EAL1, EAL2, and EAL3 can be created easily on the basis of the present model.<\/jats:p>\n               <\/jats:sec>\n               <jats:sec>\n                  <jats:title>Originality\/value<\/jats:title>\n                  <jats:p>This PP specifies the security requirements for home user information technology (IT) environments, and makes use of the Department of Defense information assurance guidelines and policies as a basis for establishing the requirements necessary for meeting the security objectives. This PP is constructed for use as a reference for home users to create safe home IT environments. Operating systems evaluated against this PP can operate at EAL4.<\/jats:p>\n               <\/jats:sec>","DOI":"10.1108\/09685221011048346","type":"journal-article","created":{"date-parts":[[2010,6,5]],"date-time":"2010-06-05T07:05:01Z","timestamp":1275721501000},"page":"101-123","source":"Crossref","is-referenced-by-count":4,"title":["Security guideline tool for home users based on international standards"],"prefix":"10.1108","volume":"18","author":[{"given":"Guillermo","family":"Horacio Ramirez Caceres","sequence":"first","affiliation":[{"name":"Graduate School of Engineering, Soka University, Tokyo, Japan"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yoshimi","family":"Teshigawara","sequence":"additional","affiliation":[{"name":"Graduate School of Engineering, Soka University, Tokyo, Japan"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"140","reference":[{"key":"2025072819514024800_b7","unstructured":"CEM v3.0\n           (2005), \u201cCommon methodology for information technology security evaluation\u201d, CCMB-2005-07-004, July."},{"key":"2025072819514024800_b1","unstructured":"ISO\/IEC 15408\n           (2005), Common Criteria for Information Technology Security Evaluation, Part 1-3 Version 3.0, ISO, Geneva, June."},{"key":"2025072819514024800_b5","unstructured":"ISO\/IEC 17799\n           (2005), Information Technology \u2013 Code of Practice for Information Security Management, ISO, Geneva."},{"key":"2025072819514024800_b6","unstructured":"ISO\/IEC 27001\n           (2005), Information Technology \u2013 Security Techniques \u2013 Information Security Management Systems \u2013 Requirements, ISO, Geneva."},{"key":"2025072819514024800_b4","unstructured":"ISO\/IEC TR 13335\n           (2000), Information Technology \u2013 Guidelines for the Management of IT Security, Part 1-5, ISO, Geneva."},{"key":"2025072819514024800_b2","unstructured":"ISO\/IEC TR 15446\n           (2004), Information Technology \u2013 Security Techniques \u2013 Guide for the Production of Protection Profiles and Security Targets, ISO, Geneva."},{"key":"2025072819514024800_b3","unstructured":"ISO\/IEC TR 19791\n           (2005), Information Technology \u2013 Security Techniques \u2013 Security Assessment of Operational Systems, ISO, Geneva."},{"key":"2025072819514024800_b10","unstructured":"Mitnick, K.D.\n           and Simon, W.D. (2002), The Art of Deception, Wiley, New York, NY."},{"key":"2025072819514024800_b8","unstructured":"National Security Agency\n           (1999), Controlled Access Protection Profile, National Security Agency, Odenton, MD, available at: www.commoncriteriaportal.org\/files\/ppfiles\/capp.pdf."},{"key":"2025072819514024800_b11","unstructured":"TCSEC\n           (1985), Department of Defense Trusted Computer System Evaluation Criteria, Department of Defense Standard, December."},{"key":"2025072819514024800_frd1","unstructured":"CC Toolbox Version 6.0f\n           (2001), National Information Assurance Training and Education Center (NIATEC), available at: www.niatec.info\/ViewPage.aspx?id=44."}],"container-title":["Information Management &amp; Computer Security"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/www.emeraldinsight.com\/doi\/full-xml\/10.1108\/09685221011048346","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/www.emerald.com\/insight\/content\/doi\/10.1108\/09685221011048346\/full\/xml","content-type":"application\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/www.emerald.com\/ics\/article-pdf\/18\/2\/101\/1243986\/09685221011048346.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/www.emerald.com\/ics\/article-pdf\/18\/2\/101\/1243986\/09685221011048346.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,7,28]],"date-time":"2025-07-28T23:51:47Z","timestamp":1753746707000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.emerald.com\/ics\/article\/18\/2\/101\/181889\/Security-guideline-tool-for-home-users-based-on"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2010,6,8]]},"references-count":11,"journal-issue":{"issue":"2","published-print":{"date-parts":[[2010,6,8]]}},"URL":"https:\/\/doi.org\/10.1108\/09685221011048346","relation":{},"ISSN":["0968-5227","1758-5805"],"issn-type":[{"type":"print","value":"0968-5227"},{"type":"electronic","value":"1758-5805"}],"subject":[],"published":{"date-parts":[[2010,6,8]]}}}