ISO/IEC/IEEE 15026-3:2023 PDF
Systems and software engineering — Systems and software assurance — Part 3: System integrity levels
Systems and software engineering — Systems and software assurance — Part 3: System integrity levels
- Статус документа:
- Действующий
- Формат:
- Электронный (PDF)
- Количество страниц:
- 21
- Дата публикации:
- 30 октября 2023 г.
- Издание:
- ISO/IEC/IEEE IS 15026 edition 3 version 1
- ICS:
- 35.080
This document specifies the concept of integrity levels with the corresponding integrity level requirements for achieving the integrity levels. Requirements and recommended methods are provided for defining and using integrity levels and their corresponding integrity level requirements. This document covers systems, software products, and their elements, as well as relevant external dependences. This document is applicable to systems and software and is intended for use by: a) definers of integrity levels such as industry and professional organizations, standards organizations, and government agencies; b) users of integrity levels such as developers and maintainers, suppliers and acquirers, system or software users, assessors of systems or software and administrative and technical support staff of systems and/or software products. One important use of integrity levels is by suppliers and acquirers in agreements, for example, to aid in assuring safety, financial, or security characteristics of a delivered system or product. This document does not prescribe a specific set of integrity levels or their integrity level requirements. In addition, it does not prescribe the way in which integrity level use is integrated with the overall system or software engineering life cycle processes. It does, however, provide an example of use of this document in Annex A.
Abstract
Overview
ISO/IEC/IEEE 15026-3:2023 - "Systems and software engineering - Systems and software assurance - Part 3: System integrity levels" defines the concept of integrity levels and corresponding integrity level requirements for systems, software products, their elements and relevant external dependencies. The third edition (2023) provides requirements and recommended methods for defining, using, determining and verifying integrity levels to support assurance of safety, security, financial and other risk-related characteristics. The standard is intentionally non‑prescriptive about specific level sets and how to integrate integrity level use into system/software life‑cycle processes (an example of use appears in Annex A).
Key topics and technical requirements
- Concepts and vocabulary: defined terms such as integrity level, integrity level claim, integrity level requirements, integrity level definition authority, and integrity level assurance authority.
- Defining integrity levels: guidance on when and how to establish levels for a domain, specify context (system and risk information), and document claims and sets of levels.
- Specifying integrity level requirements: methods for creating requirement sets tied to integrity level claims and justifying relationships between levels and requirements.
- Integrity level determination process: activities and expected outcomes for determining system integrity levels and documenting decisions.
- Assigning element integrity levels: processes to assign integrity levels to system elements and manage traceability.
- Meeting and verifying requirements: activities to demonstrate compliance with integrity level requirements and roles for approval and assurance authorities.
- Scope limitations: the standard does not mandate particular level definitions or lifecycle integration approaches.
Practical applications and users
ISO/IEC/IEEE 15026-3:2023 is practical for organizations that need to make measurable, auditable claims about system or software dependability linked to risk reduction. Common uses:
- Suppliers and acquirers: include integrity level claims and requirements in contracts to assure safety, security or financial properties of delivered systems.
- Standards and policy bodies: define domain‑specific integrity level schemes (integrity level definition authorities).
- Developers, maintainers and assessors: determine, assign and verify integrity levels during design, development, procurement and assessment.
- Regulators and certification bodies: define assurance criteria and acceptance authorities.
Keywords: ISO/IEC/IEEE 15026-3:2023, system integrity levels, integrity level requirements, system assurance, software assurance, integrity level determination, risk‑based assurance.
Related standards
- ISO/IEC/IEEE 15026‑1 (Concepts and vocabulary)
- ISO/IEC/IEEE 12207 (Software life cycle processes)
- ISO/IEC/IEEE 15288 (System life cycle processes)
This standard is a practical, risk‑focused framework for defining and using integrity levels to support traceable assurance claims across systems and software ecosystems.
Технические детали
- Технический комитет
- ISO/IEC JTC 1/SC 7 - Software and systems engineering
- SKU
- ISO/IEC/IEEE 15026-3:2023
Похожие стандарты
Другие стандарты ISO
ISO 8689-1:2000
ДействующийWater quality — Biological classification of rivers — Part 1: Guidance on the interpretation of biological qu…
Overview ISO 8689-1:2000, titled Water quality - Biological classification of rivers - Part 1: Guidance on the interpretation of biological quality data from surveys of benthic macroinvertebrates, is…
ISO/ASTM51540-04(2012)
ОтменёнStandard Practice for Use of a Radiochromic Liquid Dosimetry System (Withdrawn 2020)
Significance and Use4.1 The radiochromic liquid dosimetry system provides a means of measuring absorbed dose in materials (5-7). Under the influence of ionizing radiation, chemical reactions take pla…
ISO/ASTM51204-04
ДействующийStandard Practice for Dosimetry in Gamma Irradiation Facilities for Food Processing (Withdrawn 2013)
Significance and Use4.1 Food products may be treated with ionizing radiation, such as gamma-rays from 60Co or 137Cs sources, for numerous purposes, including control of parasites and pathogenic micro…
ISO/ASTM51431-05
ОтменёнStandard Practice for Dosimetry in Electron Beam and X-Ray (Bremsstrahlung) Irradiation Facilities for Food P…
Significance and Use4.1 Food products may be treated with acceleratorgenerated radiation (electrons and X-rays) for numerous purposes, including control of parasites and pathogenic microorganisms, in…
ISO/ASTM52628-20e1
ДействующийStandard Practice for Dosimetry in Radiation Processing
1.1 This practice describes the basic requirements that apply when making absorbed dose measurements in accordance with the ASTM E61 series of dosimetry standards. In addition, it provides guidance o…
ISO/ASTM52921-13(2019)
ДействующийStandard Terminology for Additive Manufacturing—Coordinate Systems and Test Methodologies
Significance and Use 3.1 Although many additive manufacturing systems are based heavily upon the principles of Computer Numerical Control (CNC), the coordinate systems and nomenclature specific to CN…
ISO/ASTMTR52917-EB
ДействующийAdditive Manufacturing — Round Robin Testing — General Guidelines
This document outlines the steps with regard to aspects of design to conduct and run a round robin study (RRS) to assess the degree of variability in an additive manufacturing material or process. Th…
ISO/ASTM52901-17(2023)
ДействующийStandard Guide for Additive Manufacturing – General Principles – Requirements for Purchased AM Parts
Scope 1.1 This document defines and specifies requirements for purchased parts made by additive manufacturing. 1.2 It gives guidelines for the elements to be exchanged between the customer and the pa…