Introduction of ISO/IEC Identity Proofing

Slides:



Advertisements
Similar presentations
Armand Racine Consultant Chemicals Branch
Advertisements

POLAND Development Management System in Poland Brussels, 2 July 2010.
Appropriate Access InCommon Identity Assurance Profiles David L. Wasley Campus Architecture and Middleware Planning workshop February 2008.
A Unified Approach to Combat Counterfeiting: Use of the Digital Object Architecture and ITU-T Recommendation X.1255 Robert E. Kahn President & CEO CNRI,
European Electronic Identity Practices Country Update of …………… Speaker: Date:
Functional component terminology - thoughts C. Tilton.
Step-up Authentication as-a Service Pieter van der Meulen Technical Product Manager.
Geneva, Switzerland, 2 June 2014 Introduction to public-key infrastructure (PKI) Erik Andersen, Q.11 Rapporteur, ITU-T Study Group 17 ITU Workshop.
Halifax, 31 Oct – 3 Nov 2011ICT Accessibility For All The Internet of Things (IoT) aka Machine 2 Machine (M2M) Bilel Jamoussi Chief, Study Groups Department.
Halifax, 31 Oct – 3 Nov 2011ICT Accessibility For All ITU-T Identity Management Update Bilel Jamoussi, Chief, SGD/TSB ITU Abbie Barbir, Q10/17 Rapporteur.
Update on Interoperability Roadmap Comments Sections E, F, and G Transport & Security Standards Workgroup Dixie Baker, chair Lisa Gallagher, co-chair March.
Geneva, Switzerland, 14 November 2014 Cloud Computing - Overview and Vocabulary (Y.3500) Eric A. Hibbard, CISSP, CISA CTO Security & Privacy Hitachi Data.
Geneva, Switzerland, September 2014 Lightweight Cryptography for the Connected Car/ITS Security Shiho Moriai Director, Security Fundamentals Laboratory,
Intra-ASEAN Secure Transactions Framework Project Progress Report
Geneva, Switzerland, 4 December 2014 ISO work on Mobile Financial Services Patrice Hertzog, Chairman, ISO T68/SC7 ITU Workshop.
Geneva, Switzerland, September 2014 ENISA role in ICT standardization Sławomir Górniak, ENISA ITU Workshop on “ICT.
Geneva, Switzerland, September 2014 Introduction of ISO/IEC Identity Proofing Patrick Curry Director, British Business Federation Authority.
ISO Initiatives & CSR in the EU Deborah Evans Business Manager: Corporate Reporting & Assurance LRQA A member of the Lloyd’s Register Group.
Identity Relationship Management The Next Evolution of Identity and Access Management for the Internet of Everything.
PRESENTATION OF ETSI © ETSI All rights reserved Sophia Antipolis, 22 May 2014 Luis Jorge Romero Director General, ETSI.
1 International Forum on Trade Facilitation May 2003 Trade Facilitation, Security Concerns and the Postal Industry Thomas E. Leavey Director General, UPU.
Trusted Federated Identity and Access Management to provide the Cornerstone for Cyber Defense.
Cyber Authentication Renewal Project Executive Overview June – minute Brief.
Electronic identity management for eGovernment Conceptual framework and objectives Frank Robben General manager Crossroads Bank for Social Security Strategic.
Geneva, Switzerland, September 2014 Identity Based Attestation and Open Exchange Protocol (IBOPS) Scott Streit Chief Scientist.
ITU-T X.1254 | ISO/IEC An Overview of the Entity Authentication Assurance Framework.
The Porvoo Group Tapio Aaltonen Director, CA-services, co- chair Porvoo Group Population Register Centre Finland.
Geneva, Switzerland, September 2014 Considerations for implementing secure enterprise mobility Eileen Bridges Aetna GIS Director.
EResearchers Requirements the IGTF model of interoperable global trust and with a view towards FIM4R AAI Workshop Presenter: David Groep, Nikhef.
COAG AUSTRALIA The Prime Minister, Premiers and Chief Ministers signed the IGA at the COAG meeting on 13 April The key objectives of the Strategy,
Geneva, Switzerland, September 2014 ITU-T SG 17 Identity management (IdM) Progress Report Abbie Barbir Ph.D., ITU-T Study Group 17 Q10/17 (Identity.
Jeju Island, Korea, 13 – 16 May 2013Identity Management and Identification Systems GSC17-PLEN-43 ITU-T IDENTITY MANAGEMENT UPDATE Bilel Jamoussi, Chief,
Geneva, Switzerland, September 2014 Towards a partnership-based framework for secure ICT Infrastructure in developing countries Bill McCrum Senior.
1 ©2016 Experian Limited. All rights reserved. Experian Public. ©2016 Experian Limited. All rights reserved. Experian and the marks used herein are trademarks.
Dr. Ir. Yeffry Handoko Putra
ANSI – ESOs meeting Washington February 2017
Census Planning and Management for next Nigerian Census
Cross-sector and user-centric AAI
66 items – 70% of circulated products
The ITU-T X.500 series and X.509 in a changing world
HIPSSA/SA-1. HIPSSA/SA-1 Support for Harmonization of the ICT Policies in Sub-Sahara AfricaФ or the HIPSSA project is part of a programme funded by.
Guidance for the Cloud: An EU Example - CloudWatch
Summary and Conclusions
Anupam Agrawal Chair Internet Society Kolkata Chapter
NIST Cybersecurity Framework
ITU-T Study Group 17 Security
8 Building Blocks of National Cyber Strategies
Chris Farmer Director of Fraud Strategy
The Role of European Standards in Support of the Cybersecurity Act
New Approach Held Directors’ Forum on 28th September
Session 4 – ICT role in critical infrastructure protection
NAAS 2.0 Features and Enhancements
Agenda What is a standard, who uses standards and what are they for?
E-Commerce for Developing Countries (EC-DC)
HIMSS National Conference New Orleans Convention Center
ITU Overview Empowering global ICT development Malcolm Johnson
New Approach Held Directors’ Forum on 28th September
Introduction of ISO/IEC Identity Proofing
Session 6 Security Standardization Challenges
Session 5 Trust services and cloud security
ISO management systems
ITU-T Study Group 17 Security
Appropriate Access InCommon Identity Assurance Profiles
ITU Telecommunication Development Bureau (BDT)
Moderator Mohamed M. K. Elhaj
Title of presentation Verdana 32
E-identities (and e-signatures)
Recent Standardization Activities on Cloud Computing
Joint ITU-WHO Workshop on e-Health Standards and Interoperability (Geneva, Switzerland, April 2012) Session 7 chair’s notes from session 7 open.
Presentation transcript:

Introduction of ISO/IEC 29003 Identity Proofing ITU Workshop on “ICT Security Standardization for Developing Countries” (Geneva, Switzerland, 15-16 September 2014) Introduction of ISO/IEC 29003 Identity Proofing Patrick Curry Director, British Business Federation Authority (& SC27 WG5) patrick.curry@federatedbusiness.org Geneva, Switzerland, 15-16 September 2014

Why is identity proofing so important? Trust is globally, strategically essential Authentication is key to trust Strength of credential depends on strength of enrolment & registration Core of enrolment is identity proofing and verification Geneva, Switzerland, 15-16 September 2014

What is identity proofing? Process from application to entry into a register = authoritative source Identity proofing Checking the application & evidence of identity for Level of Assurance (LoA) Checking binding to the subject Proofing Examining corroborative sources of data Looking for contra-indicators Geneva, Switzerland, 15-16 September 2014

The Key Entities Person Organisation Device Software Complicated Much national variation Organisation Register(s) of Legal Organisations 6 categories of attributes; 2 mandatory Device TPM best practice Secure issuance Software To be confirmed Geneva, Switzerland, 15-16 September 2014

The fast changing international situation National cyber strategies Cyber control frameworks Pressure for strong authentication New regulations EU eID Authentication & Signature Regulations Many national e-ID programmes More authentication requirements in supply chains Geneva, Switzerland, 15-16 September 2014

The role of international standards Enable interoperability = agility Enable deployment and affordability Reduces risks and costs Standards bodies need to: Engage with governments and industry Establish better coordination Move faster Geneva, Switzerland, 15-16 September 2014

Conclusions and Recommendations Too slow Spread the load Avoid gaps Broadening communities Become more proactive Collaborate with ISO Framework approach Communicate better Geneva, Switzerland, 15-16 September 2014