28
行動應用App基本資安自主檢測推動制度 V3.0 經濟部工業局 中華民國 106 02

行動應用App基本資安自主檢測推動制度 · 證(GIAC Penetration Tester,GPEN)、或行動裝 置安全性分析專家認證(GIAC Mobile Device

  • Upload
    lekhue

  • View
    226

  • Download
    0

Embed Size (px)

Citation preview

  • App

    V3.0

    106 02

  • i

    App ........................ 1

    1. ................................................................................................... 1

    2. ................................................................................................... 1

    3. ........................................................................................................... 2

    4. ........................................................................................... 2

    5. ....................................................................................... 2

    6. ................................................................................................... 3

    7. ............................................................................................... 3

    8. App MAS ........................................ 3

    9. ................................................................................................... 4

    10. ................................................................................................... 4

    11. ........................................................................................................... 4

    App ........ 5

    1. ................................................................................................... 6

    2. ....................................................................... 6

    3. ................................................................................................... 7

    4. ............................................................................... 7

    5. ....................................................................... 7

    6. ............................................................................... 7

    7. ........................................................................... 8

    App .......................... 10

    1. ................................................................................................. 11

    2. ................................................................................................. 11

    3. ................................................................................. 11

    4. ......................................................................... 12

    5. ..................................................................................... 12

    6. ......................................................................................................... 12

    ............................................ -1

    App ....... -1

    App ... -1

    App MAS ............ -1

    App ................... -1

    App ....... -1

    App ... -1

  • App

  • 1

    App

    26

    104 4

    App App

    App

    App

    1.

    1.1. App App

    1.2. App Mobile Application Basic

    Security MAS

    App

    1.3. App App

    2.

    2.1. App

    App

    2.2.

    App

    MAS App

    App

    MAS

  • 2

    3.

    3.1. App App

    App

    3.2.

    3.3.

    3.4.

    3.5.

    App

    3.6. Application Store

    4.

    4.1.

    MAS

    4.2. 6

    App

    4.3. 7 App

    App App

    MAS App

    4.4. App App

    5.

    5.1.

  • 3

    5.2.

    a. App

    b. App

    MAS

    6.

    Taiwan Accreditation

    Foundation TAF

    7.

    7.1. App

    3

    7.2.

    7.2.1.

    7.2.2. App

    7.2.3. App

    8. App MAS

    8.1. App

    App

    MAS

    MAS

    8.2. MAS App

  • 4

    a.

    b.

    c.

    8.3. App

    8.4. MAS 1

    a. App

    b.

    8.5. App

    9.

    App App

    10.

    App

    11.

    11.1.

    11.2.

    11.3.

    11.4.

  • App

  • 6

    1.

    1.1. App 7

    1.2.

    App

    2.

    2.1.

    2.2.

    2.3.

    2.3.1.

    CNS 17025 ISO/IEC 17025

    2.3.2.

    3

    2.3.2.1.

    2 ISO/IEC 17025

    CNS 17025

    2.3.2.2.

    2

    2.3.2.3. 3

    a. Certified Ethical HackerCEH

    GIAC Security Essentials

    GSEC

  • 7

    b.

    Certified Information Systems Security

    ProfessionalCISSP

    Certified Secure Software Lifecycle Professional

    CSSLPEC-Council

    Certified Security AnalystECSA

    EC-Council Computer Hacking

    Forensic InvestigatorCHFI

    GIAC Penetration TesterGPEN

    GIAC Mobile Device

    Security AnalystGMOB

    Certificate of Application Vetting Professional

    CAVP

    2.3.3. 3 2

    App

    3.

    2

    4.

    5.

    6.

    6.1. App

    3

  • 8

    6.2. App

    6.3.

    7.

    7.1. 2

    7.2.

    7.3.

    7.4. App

    7.5. 7.17.4

    7.6.

    7.7.

    15

    a.

    b.

    c.

    d.

    7.8.

  • 9

    7.9. App

    1 App

    App

  • App

  • 11

    1.

    1.1. App 9. App

    1.2. App

    2.

    2.1. App

    App

    2.2. App Mobile Application Basic

    Security MAS App

    App

    3.

    3.1.

    3.1.1. App

    App

    App

    MAS

    MAS

    3.1.2. 3.1.1

    3.2.

    3.2.1.

    MAS

    3.2.2. MAS

    3.2.3. MAS App

  • 12

    4.

    4.1. MAS 1

    a.

    b.

    4.2. App

    App

    4.3. App

    5.

    5.1.

    App

    5.2. App MAS

    App

    5.3. 5.2 App

    App

    App

    6.

    6.1.

    App 6.

    6.2.

  • -1

    N

    Y

  • -1

    App

    App

    TAF

    e-mail

    App

    15

    App

  • -1

    App

    App App

    1.

    TAF App TAF App

    2.

    2.1.

    2.2.

    3.

    3.1.

    3.2.

    3.3. 15

    a.

    b.

    c.

    d.

    e.

    f.

    3.4.

    4.

    4.1.

  • -2

    4.2.

    4.3.

    4.4.

    4.5. App

    4.6.

    4.7. 4.1~4.6

    4.8. App 1 App App

    5.

    5.1.

    5.2. App 3

    5.3. App

    5.4.

    6.

    6.1. App

    6.2. App App

    6.3.

    a. TAF

    b.

    c. App App

  • -3

    d. App

    e.

    f.

    g.

    6.4.

    7.

    7.1.

    7.2.

    8.

    8.1.

    8.2.

    8.3.

    a.

    b.

    c.

    d.

    e.

    9.

    9.1. App App

    9.2.

    a. App

    b. App

    c. App

    d.

  • -4

    e.

    9.3.

    a.

    b.

    c.

    10.

    10.1.

    10.2.

    10.3.

    11.

    11.1.

    11.2.

  • -1

    App MAS

    App

    App

    App

    App

    App

    App MAS

    MAS

  • -1

    App

    App Mobile Application Basic Security MAS

    /

    App

    MAS

    App

    App

    App

  • -1

    App

    App App Mobile Application Basic Security MAS

    1.

    MAS App MAS

    2.

    2.1 MAS MAS

    2.2 MAS

    3.

    MAS App App

    4.

    4.1

    4.2 MAS

    5. App

    5.1 App MAS

    5.2 MAS

    5.3 MAS MAS

    5.4 App

    5.5 MAS MAS

    a.

    b.

    c.

  • -2

    d. 2

    e. 6

    f. 7.17.2

    g.

    h. AppApp

    i. AppMASApp8.4MASMAS

    6.

    6.1 1App App

    6.2 MAS

    7.

    7.1 MAS App

    7.2 App App

    7.3

    7.4 MAS MAS

    8.

    8.1 MAS

    8.2 MAS

    8.3

  • -1

    App

    App