Helena Sims NACHA – The Electronic Payments Association Overview of The Electronic Authentication Partnership Tenth Federal & Higher Education PKI Coordination.

Slides:



Advertisements
Similar presentations
PROVINCIAL COACHING COMMISSIONS STRUCTURE AND TERMS OF REFERENCE.
Advertisements

Levels of Assurance: An Overview Peter Alterman, Ph.D. Chair, Federal PKI Policy Authority.
KEITH CANTANDO, CBCP CORPORATE SECURITY - PROGRAMS PROGRESS ENERGY PS-Prep (DHS – Voluntary Private Sector Preparedness Accreditation.
Identity Federation Rules and Process Linda Elliott President, PingID Network Electronic Authentication Partnership Washington, DC February 12, 2004.
Certificate Interoperability S&I Framework Initiative Final Report August 17, 2011.
Federal Risk and Authorization Management Program (FedRAMP) Lisa Carnahan, Computer Scientist National Institute of Standards & Technology Standards Coordination.
Presentation by Cambodian Participants Phuket, Thailand February 2012 Health Impact Assessment Royal Government of Cambodia.
Kantara Initiative Identity Assurance Framework Overview and Value Proposition March 8, 2011.
FIPS 201 Personal Identity Verification For Federal Employees and Contractors National Institute of Standards and Technology Information Technology Laboratory.
IDESG Goals & Work-plans for 2013 and beyond Brett McDowell IDESG Management Council Chair
Framework Planning Draft 1 Jack Suess Ian Glazer Peter Alterman Andrew Hughes Michael Garcia.
U.S. Environmental Protection Agency Central Data Exchange EPA E-Authentication Pilot NOLA Network Node Workshop February 28, 2005.
Click to edit Master title style OASIS PKI Workshop.
1 eAuthentication in Higher Education Tim Bornholtz Session #47.
Building Trusted Transactions Identity Authentication & Attribute Exchange In Public and Private Federations OASIS Conference September 2010 Joni Brennan,
Illinois Cooperative Education and Internship Association Spring Conference “The Illinois Cooperative Work Study Program Overview And a Showcase of the.
The E-Authentication Initiative An Overview Peter Alterman, Ph.D. Assistant CIO for e-Authentication, NIH and Chair, Federal PKI Policy Authority The E-Authentication.
Introduction to OIX: A Market Solution to Online Identity Trust Don Thibeau.
New York Health Information Security and Privacy Collaboration (NY HISPC) AHRQ Annual Meeting September 27, 2007 Ellen Flink Project Director NYS DOH.
KEEP System Stakeholder Advisory Team Meeting September 15, 2010.
The Institute of Internal Auditors
HIT Policy Committee Nationwide Health Information Network Governance Workgroup Recommendations Accepted by the HITPC on 12/13/10 Nationwide Health Information.
TFTM Interim Trust Mark/Listing Approach Paper Analysis of Current Industry Trustmark Programs and GTRI PILOT Approach Discussion Deck TFTM Committee.
Interoperability Updates -National Interoperability Roadmap 8/20/2014 Erica Galvez, ONC Interoperability Portfolio Manager.
1 EAP and EAI Alignment: FiXs Pilot Project December 14, 2005 David Temoshok Director, Identity Policy and Management GSA Office of Governmentwide Policy.
Recognition: the national centre and the ENIC Network Seminar on the recognition of qualifications Baku, 22 April 2005 Gunnar Vaht Head of the Estonian.
Legislative/Executive Branch Update Thomas M. Leary Director, Federal Affairs September 23, 2005.
Identity Ecosystem Framework and Charter Gap Analysis.
ITU-T X.1254 | ISO/IEC An Overview of the Entity Authentication Assurance Framework.
HIT Policy Committee NHIN Workgroup Recommendations Phase 2 David Lansky, Chair Pacific Business Group on Health Danny Weitzner, Co-Chair Department of.
PKI Forum Mission “The PKI Forum is an international, not-for-profit, multi- vendor and end-user alliance whose purpose is to accelerate the adoption and.
E-Authentication: Simplifying Access to E-Government Presented at the PESC 3 rd Annual Conference on Technology and Standards May 1, 2006.
Smart Grid Interoperability Panel & ISO / RTO Council Smart Grid Projects David Forfia SGIP Governing Board Member – Stakeholder Category 21 ISO/RTO Sponsor.
University of Central Florida Assessment Toolkit for Academic, Student and Enrollment Services Dr. Mark Allen Poisel Dr. Ron Atwell Dr. Paula Krist Dr.
Identity Assurance: When it Matters David L. Wasley Internet2 / InCommon.
1 National Audioconference Sponsored by the HIPAA Summit June 6, 2002 Chris Apgar, CISSP Data Security & HIPAA Compliance Officer Providence Health Plan.
U.S. Department of Agriculture eGovernment Program July 9, 2003 eAuthentication Initiative Update for the eGovernment Working Group eGovernment Program.
1 David C. Kibbe, MD MBA DirectTrust A Discussion About Scalable Trust May 9,
© 2003 The MITRE Corporation. All rights reserved For Internal MITRE Use Addressing ISO-RTO e-MARC Concerns: Clarifications and Ramifications Response.
Shibboleth Update Eleventh Federal & Higher Education PKI Coordination Meeting (Fed/Ed Thursday, June 16, 2005.
Identity Federations and the U.S. E-Authentication Architecture Peter Alterman, Ph.D. Assistant CIO, E-Authentication National Institutes of Health.
1 Federal Identity Management Initiatives Federal Identity Management Initatives David Temoshok Director, Identity Policy and Management GSA Office of.
PUBLIC–PRIVATE PARTNERSHIP (PPP) FRAMEWORK AND GUIDELINES Syed M. Ali Zaidi, P.Eng. PM(Stanford), Ph.D. Director, Strategic Partnerships Alberta Infrastructure.
HIT Policy Committee NHIN Workgroup HIE Trust Framework: HIE Trust Framework: Essential Components for Trust April 21, 2010 David Lansky, Chair Farzad.
Panelists ASIS International – Dr. Marc Siegel, Security Management System Consultant, ASIS International Disaster Recovery Institute International (DRII)
Transforming Government Federal e-Authentication Initiative David Temoshok Director, Identity Policy and Management GSA Office of Governmentwide Policy.
Kantara Initiative Privacy Framework Overview and Value Proposition 13 May 2011.
Helena Sims Senior Director Public/Private Partnerships Overview of the Electronic Authentication Draft Charter Presentation to the Electronic Authentication.
HIT Policy Committee Meeting Nationwide Health Information Network Governance June 25, 2010 Mary Jo Deering, PhD ONC, Office of Policy and Planning NHIN.
MnSCU Audit Committee September 18, 2002 Discussion on the Role of the Audit Committee MnSCU Audit Committee September 18, 2002.
For Presentation at 28 th APEC Transportation Working Group Meeting Vancouver, Canada Walter Kulyk Director, Office of Mobility Innovation Federal Transit.
Resources for Meeting Internet Safety Requirements Cheryl Elliott James Madison University Bill Johnsen Virginia Beach City Public Schools Educational.
Voluntary Standards and Government: Working Together A Positive Collaboration Benefits Both the Public and Private Sectors Presentation by Mary C. McKiel,
1 David C. Kibbe, MD MBA DirectTrust Collaborating to Build the Security and Trust Framework for Direct Exchange June 20, 2013.
Presentation to Essex County Council Tourism Windsor Essex Pelee Island Business Plan Gordon Orr – Chief Executive Officer Lynnette Bain – Vice.
Surface Transportation System Funding Alternatives Program Overview 1 Bob Arnold, Director Office of Transportation Management, FHWA.
The Federal E-Authentication Initiative David Temoshok Director, Identity Policy GSA Office of Governmentwide Policy February 12, 2004 The E-Authentication.
E-Authentication Guidance Jeanette Thornton, Office of Management and Budget “Getting to Green with E-Authentication” February 3, 2004 Executive Session.
EAuthentication – Update on Federal Initiative Jacqueline Craig IR&C September 27, 2005.
Updated ERO Enterprise Guide for Internal Controls
Higher Education’s Role in the Identity Ecosystem
Quality Enhancement Plan and SACS Reaffirmation
Privacy, Security, and Identity Management Update
U.S. Federal e-Authentication Initiative
EDUCAUSE Fed/Higher ED PKI Coordination Meeting
Presented to Department of Information Technology February 24, 2010
HIMSS National Conference New Orleans Convention Center
American National Standards Institute
Panelists ASIS International – Dr. Marc Siegel, Security Management System Consultant, ASIS International Disaster Recovery Institute International (DRII)
STI-GA Update to the NANC
Presentation transcript:

Helena Sims NACHA – The Electronic Payments Association Overview of The Electronic Authentication Partnership Tenth Federal & Higher Education PKI Coordination Meeting

Electronic Authentication Partnership Mission Statement Goal: –Reliable Identity Authentication –Convenience –Ease of use We Propose to: –Create a voluntary partnership –Promote trust and Interoperability –Develop an evaluation process –Build on what exists –Work cooperatively with other nations’ identity systems

Tasks: The EAP Will Develop Operating Rules Addressing –Business requirements and processes –Standards for Credentials –Hierarchical assurance levels –Criteria for evaluating credentials at each assurance level Evaluation, accreditation and compliance with credentialing process Accreditation List

EAP Framework: Benefits Focuses on traditional problem areas for federated authentication. Complements and leverages existing initiatives. Provides a framework that will: –Enhance the utility and portability of credentials across circles of trust. –Expand markets by promoting wider use of credentials. –Help authentication initiatives validate their approaches to credentialing.

EAP Framework Authentication Risk and Assurance Levels Credential requirements Accreditation process for credentials & providers Common business rules List of trusted credential providers with EAP brand Governance Structure A public/private governance structure to establish and maintain a federated identity management framework

EAP Framework: Development Approach USG Private sector Educatio n Health Etc. Processes and Rules Sets Credential Standards Evaluation processes EAP Working Groups produce EAP Framework EAP Framework Reassess and update based on market conditions and changes

Background Spring 2003 White Papers by CSIS and Johns Hopkins June through December Four CSIS Work Group Meetings December 11, Public Forum to Announce EAP 2004 – Six Meetings So Far Active Workgroups

Workgroups Business Requirements and Processes –Linda Elliot, PingID Network, Chair –Thomas J. Greco, Betrusted, Vice Chair Credential Services Assessment Criteria, Levels of Assurance –R.J. Schlecht, Mortgage Bankers Association of America, Chair –Von Harrison, GSA, Vice Chair –Subworkgroup Chairs Dr. Peter Alterman, NIH Nancy Black, Consultant

Workgroups Evaluation, Accreditation and Compliance –Cornelia Chebinou, National Association of State Auditors, Comptrollers and Treasurers, Chair EAP Governance –Paula Arcioni, New Jersey Office of Information Technology, Chair –Roger Cochetti, CompTIA, Vice Chair

Workgroup on Business Requirements and Processes General Rights and Obligations –Credential Services Providers –Relying Parties Assessor Participation Agreements Process to Bind Participants to Business Rules Privacy and Fair Information Practices Enforcement and Recourse, including fines

Workgroup on Services Assessment Criteria, Levels of Assurance and Technical Interoperability Levels of Assurance Service Assessment Criteria (SAC) for use by Assessors –Common Organizational SAC –Identity Proofing SAC –Credential Management SAC Technical Interoperability –Components of interoperability –Options and recommendations for EAP adoption

Workgroup on Evaluation, Accreditation and Compliance Accreditation, Assessment and Certification –Accreditation of Assessors –Certification of Credential Service Provider Offerings –Process for Handling Non-Compliance –Acceptable Public Statements Regarding EAP Accreditation and Certification

Workgroup on EAP Governance Developed Charter – Approved September 2, 2004 Developing EAP Budget

Time Frames Remainder of 2004 –Election of Board and Officers –Adoption of First Set of Operating Rules 2005 – Earlier Adopters Phase –Revise Rules Based on Experience 2006 –Production Phase - Begin Full Scale Implementation

EAP Information Next Meeting: February 9, 2005 in DC –Come Join Us! –To Register: Web Site: