@techreport{oai:ipsj.ixsq.nii.ac.jp:00174291, author = {金子, 朋子 and 髙橋, 雄志 and 勅使河原, 可海 and 田中, 英彦 and Tomoko, Kaneko and Yuji, Takahashi and Yoshimi, Teshigawara and Hidehiko, Tanaka}, issue = {5}, month = {Aug}, note = {モノのインターネットといわれる IoT システムは今後急激な普及・拡大が見込まれる.しかし,つながる世界は様々なリスクも抱えており,セキュリティ設計技術はつながる世界では重要である.つながる対象の広がりに応じて,IoT セキュリティ要件はより複雑化するため,その可視化は特に重要な課題である.コモンクライテリア (CC) とアシュアランスケースを用いてセキュリティ要求分析と保証を実現する手法である CC-Case によるセキュリティ要件の可視化を提案する.これは従来の脅威分析に比べ,シンプルで分かり易い図示手法である.本論文では IoT セキュリティの具体的事例をもとに CC-Case による脅威分析から対策立案までのプロセスとそのメリットを示す., IoT, Internet of Things, systems are expected to be in widespread use rapidly all over the world. However, the connected world using the Internet has various risks. The security design technology becomes more important in such the connected world. Depending on increasing a variety of connected targets, IoT security requirements becomes even more complicated. Therefore, the visualization of IoT security requirements become a important issue. We propose a visualization method of IoT security requirements by applying the CC-Case which realizes security requirement analysis and assurance by using the Common Criteria (CC) and the assurance case. This method has simpler, and plainer diagrammatic representation than conventional threat analyses. In this paper, We show the drafting process and merits of CC-Case from threat analysis to countermeasure are planning using a concrete example of IoT security.}, title = {CC-Caseを用いたIoTセキュリティ要件の可視化}, year = {2016} }