Kantara Initiative Identity Assurance WG Teleconference

 

Meeting Minutes - IAWG approved on IAWG Meeting Minutes 2016-10-20

Date and Time

Agenda

  1. Administration:
    1. Roll Call
    2. Agenda Confirmation
    3. Minutes Approval: 
    4. Action Item Review
    5. Organization Updates - Director's Corner
    6. Staff reports and updates
    7. LC reports and updates
    8. Call for Tweet-worthy items to feed (@KantaraNews or #kantara)
  2. Discussion
    1. Review of NISTIR 8149: developing trust frameworks 
    2. Planning for NIST SP 800-63-3 alignment
    3. Update on IDESG Mapping Subgroup

 Attendees

Link to IAWG Roster

As of 2015-11-05, quorum is 5 of 9

 

Meeting achieved quorum

Voting

Non-Voting

Staff

Apologies

Notes & Minutes

Administration 

Minutes Approval

Motion to approve minutes of 2016-09-08 : Andrew Hughes
Seconded: Russ
Discussion:  Scott will update 2016-09-22
Motion Carried | Carried with amendments | Defeated

Staff Updates

Director's Corner Link
ASSURANCE PROGRAM Updates
Leadership Council Updates
Participant updates

Discussion

Review of NISTIR 8149: developing trust frameworks 

NIST has produced NISTIR 8149 with a short comment period, ending on november 1st.  Andrew believes that KI should produce a formal comment, maybe not specific detailed comments.  KI should comment as an organization, maybe the ARB, but detailed commentary about specific clauses and wording, unless it's very significant we might choose to have individual companies make their comments directly.

IAWG members will review the document and provide comments to Scott who will send a comment form. During October IAWG meeting we will aim to review the comments and indicate the number of IAWG members that support the comments, to indicate to NIST how much support for the comments there are.  In addition there will be an overall Kantara comment submitted by KI, approved by IAWG and ARB.

Planning for NIST SP 800-63-3 alignment

Open discussion of the question of whether the IAF needs to be updated to reflect 800-63-3.

Action Item for Andrew to ask whether NIST has a mapping from -2 to -3 at whatever level of granularity they can manage.  When the first draft of -3 comes out it should probably have a coverage map or traceability matrix.

Ken from Experian expresses the opinion that the new requirements have increased the friction. 

Action Item to follow up about the market review committee referenced by Christine.

Is there other work that needs to be done in preparation for the alignment effort? Do we start based on the initial public draft?

 Update on IDESG Mapping Subgroup

Organizations that are interested in obtaining IDEF listing, they may be interested in the process of mapping the Kantara IAF to the IDESG Identity Ecosystem Framework.  Please notify Ruth if you are interested in participating.

AOB

Attachments

 

 

Next Meeting