Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Hello everyone 

...

2) There's a growing realization that NIST SP 800-63-3 (and soon revision 4) remains as the de jure de facto standard just as its predecessor 800-63-2 (or in its international guise ISO/IEC 29115 or ITU-T's x.1254 Entity Authentication Assurance) was. You can find elements of these in eIDAS Implementing Acts, in the UK's GPGs, in Canada's early work on CATS, in New Zealand's Authentication standards fr online services. Authentication requirements in Australia's TDIF are pulled straight from 63-3. Slam dunk. So if you are an international IDaaS brand and looking for the most cost effective conformance that gets you most of the way in most jurisdictions to minimize the in-country conformance lift, what standard are you going to choose to build your product against?   

3) In the US, there is emerging evidence that those federal agencies charged with obligations under OMB M 19-17 are actively moving on those obligations which stipulate the adoption of 63-3. While we have not yet seen many of these downstream directives published in policy, there seems to be some informal industry chatter that points to a formal position being announced in coming months.       

4) Globally, add in the COVID effect - more people needing more access to more services online - and you there you have it. The perfect storm.

      

Thank you for rejoining ID Crowd!  It's great to have you back, as we celebrate the renewals from the Department of Internal Affairs, New Zealand Government, Board Director digi.me, Accredited Assessor Zygma, Patient Centric Solutions, and NeoCapita in Australia. 

...

Program, Work Group and Discussion Group Updates:

  • You can always keep up with the latest news from the Work and Discussion Groups directly on the Leadership Council's Blog. See the list of public groups here.

...