Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Richard Wilsher, Zygma (observer)


Key discussion items


...

  • Scope of the sub-group

...

  • ; Ground rules for requirements decomposition

...

  • ; Requirements Naming Scheme

...

  • ; Requirements Data Model

...

  • ; Work Plan

...

  • ; Timeframe

...

  • ; Participation - sub-group members

...

  • ; Logistics.
  • Scott shared

 

...

  • It was commented that there is not a specific priority on the sections, we want all them done

...

  • and  we should drive towards completion on all.

  • David T

...

  • reported that

...

  • NIST

...

  • is working on a list of requirements pulled from 63A and 63B. Work group would appreciate the contribution.

...

  • Ken

...

  • inquired why A and B rather than C. David

...

  • responded that the task is to find common mappings with GPG44/45 of UK cabinet office, and a range of Canadian government documents.  GPG44/45 correspond to 63A and 63B. Federation as an operational component was beyond the scope of that mapping.  May need to turn to 63C when they get to operational stage of this project.

  • Andrew

...

  • commented that compliance is the wrong word

...

  • and suggested ‘conformity’, defined as fulfilling the requirements.

  • Andrew

...

  • provided a suggestion about the 'assessment methods' piece - Paul Grassi mentioned yesterday on the TFP call that NIST is aiming to produce a 63-3 guidance document in around January 2018. Maybe the 'assessment methods' piece might be dealt with as that material develops.

  • David

...

  • asked – IAF has to date required on qualified assessors to determine the assessment methodology to apply to SAC.  Documenting assessment methods goes beyond the current scope of IAF – qualified assessors would determine assessment methodologies to their satisfaction. Is this a conscious expansion of the scope of the IAF?

...

  • Colin

...

  • responded that we’re trying to clarify more than anything else. May be a need to codify aspects of the assessment methods – middle ground between nothing and fully open.

 

David notes that the initial work plan task was to state the requirements into a clearly understandable set of criteria that qualified assessors would be in a position to evaluate.

...