Home
  News White Papers Customers
  CA Contact Imprint
ZKA-Evaluation

Our Expertise

The "Zentrale Kreditausschuss" (ZKA) has defined a criteria catalogue for components to be used within the electronic payment schemes of the German credit industry. SRC is acknowledged as an evaluator responsible for the security of electronic payment schemes by the ZKA. SRC employees have extensive and long lasting experience in the area of security analysis of payment schemes components according to the standards - of form as well as content - of ZKA-Security Evaluations. Based on the exact knowledge of all the aspects about the ZKA-approval scheme, SRC is not only able to identify vulnerabilities, but to lead its clients successfully to their goal: the ZKA-approval for their component in due time. SRC also knows international criteria, such as the criteria of the Payment Card Industry (PCI). Thus SRC is able to carry out the ZKA-evaluation so that the results also meet the international standards.

Our Services

SRC evaluates the security of components and systems used by electronic payment schemes. For example:
  • hardware and software for terminals and security modules,
  • system concepts, cryptographic methods and protocols,
  • operating systems and applications of chip cards,
  • security of used semi-conductors (among others: resistance test towards side-channel-attacks, e.g. simple power analysis (SPA) and differential power analysis (DPA), or fault-injection-attacks),
  • organisational measures during the development, production and operation of security-sensitive components.
SRC offers, in case of redefinitions of license subjects by the ZKA, prompt security evaluations, e.g. for EMV Debit/Credit POS-Terminals. SRC supports the producer and the network operator during the complete ZKA-approval process - from the registration at the ZKA until the presentation of the security evaluation report in front of the ZKA-task force for security questions and strategies in Berlin. Examplary, the security evaluation of a SBOX on behalf of an European electronic cash network operator describes the approach of SRC.
Information
Sandro Amendola
Detlef Kraus
Thilo W. Pannen


Telefon: +49(0)228 / 2806 - 0
Telefax: +49(0)228 / 2806 - 199