AS ISO 13491.2:2025

$177.61

Financial services – Secure cryptographic devices (retail), Part 2: Security compliance checklists for devices used in financial transactions

AS ISO 13491.2:2025 identically adopts ISO 13491-2:2023, which specifies checklists to be used to evaluate secure cryptographic devices (SCDs) incorporating cryptographic processes as specified in ISO 9564-1, ISO 9564-2, AS ISO 16609, and AS ISO 11568 in the financial services environment.

Table of contents
Header
About this publication
Preface
Foreword
Introduction
1 Scope
2 Normative references
3 Terms and definitions
4 Use of security compliance checklists
Annex A
A.1 General
A.2 Device characteristics
A.2.1 Physical security characteristics
A.2.1.1 General
A.2.1.2 General security characteristics
A.2.1.3 Tamper-evident characteristics
A.2.1.4 Tamper-resistant characteristics
A.2.1.5 Tamper-responsive characteristics
A.2.2 Logical security characteristics
A.3 Device management
A.3.1 General consideration
A.3.2 Device protection by manufacturer
A.3.3 Device protection between manufacturer and post-manufacturing phases
A.3.4 Device protection during initial financial key loading and prior to pre-use
A.3.5 Device protection during pre-use and prior to installation
A.3.6 Device protection subsequent to installation
A.3.7 Device protection after removal from service
Annex B
B.1 General
B.2 Device characteristics
B.2.1 Physical security characteristics
B.2.1.1 General physical security characteristics
B.2.1.2 Tamper-responsive characteristics
B.2.2 Logical security characteristics
B.3 Device management
B.3.1 PIN entry device protection during initial key loading
B.3.2 PIN entry device protection after installation
Annex C
C.1 General
C.2 Device characteristics
C.2.1 Physical security characteristics
C.2.2 Logical security characteristics
C.3 Device management
Annex D
D.1 General
D.2 Logical security device characteristics
Annex E
E.1 General
E.2 Device characteristics
E.2.1 Physical security characteristics
E.2.2 Logical security characteristics
E.3 Device management
Annex F
F.1 General
F.2 Device characteristics
F.2.1 Physical security characteristics
F.2.2 Logical security characteristics
F.3 Device management
Annex G
G.1 General
G.2 Device management
G.2.1 General considerations
G.2.2 Device management for digital signature verification
Annex H
H.1 General
H.2 Uncontrolled environments
H.3 Minimally controlled environments
H.4 Controlled environments
H.5 Controlled-plus environments
H.6 Secure environments
Bibliography

Cited references in this standard
Content history
DR AS ISO 13491.2:2025

Please select a variation to view its description.

Published

02/05/2025

Pages

38

Please select a variation to view its pdf.

AS ISO 13491.2:2025
$177.61