Hosted by: June 23-26, 2003 New York City State of Biometric Standards Jeff Stapleton, Manager Information Risk Management

Slides:



Advertisements
Similar presentations
Biometric Information Management For Security Phillip H. Griffin Griffin Consulting 1625 Glenwood Avenue Hayes Barton at Five Points Raleigh, North Carolina.
Advertisements

International Workshop on Usability and Biometrics: NIST Welcome
Standard Norge 2004 Status for biometri standardisering Asbjørn Hovstø ErgoSolutions Hans Mustadsgate 31 N-2810 Gjøvik
Practical Digital Signature Issues. Paving the way and new opportunities. Juan Carlos Cruellas – DSS-X co-chair Stefan Drees - DSS-X.
Addressing Usability of Biometrics in Standards Elaine Newton NIST.
JTC 1 Strategic Advisory Committee Key Areas of Priority February 2014.
15June’061 NASA PKI and the Federal Environment 13th Fed-Ed PKI Meeting 15 June ‘06 Presenter: Tice DeYoung.
ISO/IEC JTC1 SC37 Overview
Biometrics in New Zealand Passport issuing Border crossing System and information access Building access.
PIV Data Model Testing Ketan Mehta March 3, 2006.
GSC16-OBS-03 ITU-T GSC – 16 Observer Presentation Karen Higginbottom, JTC 1 Chair.
Standards for Biometrics Dr. Pushkin Kachroo. Introduction Standards needed for interoperability At all levels of the system –hardware level (using one.
Asia Biometrics Workshop 2004 Korea Standardization and Research activities of Biometrics Testing Technique 16. Sept 2004 Director, Jason Kim / Director,
An Overview of Accredited Standards Committee X9 October 27, 2014 Claudia Swendseid Senior Vice President Federal Reserve Bank of Minneapolis Presentation.
Geneva, Switzerland, 4 December 2014 ISO work on Mobile Financial Services Patrice Hertzog, Chairman, ISO T68/SC7 ITU Workshop.
JAVAPOSTM Java for POS Devices
DL/ID Card Design Specification Responsible Retailing Forum Rich Carter (AAMVA) 2004 Responsible Retailing Forum The Next Generation of State IDs.
Introduction to ebXML Mike Rawlins ebXML Requirements Team Project Leader.
ISO 9001:2015 Revision overview - General users
Accredited Standards Committee X9, Inc. An Introduction to Financial Industry Global Standards.
Copyright OASIS, 2001 OASIS Election & Voter Services Technical Committee John Borras Office of e-Envoy Cabinet Office UK Government May 2002.
Defence and Security Division SC37 Paris status report CEN Biometric Focus Group Brussels January 26th 2005.
LTSC and SC36 Collaboration1 Proposal for JTC1/SC36 Collaboration Frank Farance, Edutool.Com
HL7 Webinar: Mobile Health Chuck Jaffe Austin Kreisler John Quinn 19 March 2012.
Copyright OASIS, 2002 OASIS Topic Maps Technical Committees Standards Update Presentation Knowledge Technologies Conference Seattle , March 11 Bernard.
XML Working Group Joan Ugljesa NDIA PMSC April,
Special Publication : Interfaces for Personal Identity Verification Jim Dray NIST NPIVP Workshop March 3, 2006.
IECM Briefing: XML Community of Practice Betsy Fanning AIIM.
EDI Standards Development Pamela A. Grosze, Manager of Systems and Software Engineering, NDCHealth.
The Biometric Foundation Biometrics – Standards Activities National Defense Industrial Association 19 th Annual Security Symposium Reston, Virginia June.
1 1 Update: ISO/IEC Identification Cards - Integrated circuit cards programming interfaces Teresa Schwarzhoff, U.S. Department of Commerce Porvoo-12:
TOSCA Technical Committee Kick-off December 12, 2011.
DICOM and ISO/TC215 Hidenori Shinoda Charles Parisot.
MED INF HIT Integration, Interoperability & Standards ASTM E-31 January 14, 2010 By Imran Khan.
Delivering Global Innovation Opens Standards Development and Process Automation.
Riccardo Genghini - Ws E-Sign Chairman – IETF PKIX San Francisco March Electronic Signature infrastructure for Europe Riccardo Genghini Cen/Isss.
Geneva, Switzerland, April 2012 Introduction to session 7 - “Advancing e-health standards: Roles and responsibilities of stakeholders” ​ Marco Carugi.
Introduction to Biometrics Dr. Bhavani Thuraisingham The University of Texas at Dallas Lecture #21 Biometrics Standards - I November 7, 2005.
Halifax, 31 Oct – 3 Nov 2011ICT Accessibility For All Cloud Computing in TTC Kazunori MATSUO, TTC Cloud Computing Advisory Group Document No: GSC16-PLEN-17.
SAML: An XML Framework for Exchanging Authentication and Authorization Information + SPML, XCBF Prateek Mishra August 2002.
28 th International Traffic Records Forum Biometrics/SmartCard Workshop 28 th International Traffic Records Forum August 4, 2002 Orlando, Florida.
Joint Meeting Report on Standards 8 July Recent Accomplishments Systems Modeling Language (SysML) specification accepted for adoption by OMG AP233.
European Electronic Identity Practices CEN TC224 WG15 European Citizen Card Standard Speaker: L. Gaston AXALTO Date: 26 May 05.
Health IT Workforce Curriculum Version 1.0 Fall Networking and Health Information Exchange Unit 3b National and International Standards Developing.
1 ISO/IEC JTC1/SC37 Standards A presentation of the family of biometric standards October 2008.
SC 37 “Biometrics” and correlations with JTC1 Special Working Group on Accessibility Ing. Mario Savastano IBB (CNR) and DIEL (Federico II University of.
GSC-19 Meeting, July 2015, Geneva Guest Presentation by ISO and IEC Henry Cuschieri, ISO Gilles Thonet, IEC Jim MacFie, JTC 1 Document No:GSC-19_009.
Overview of SC 32/WG 2 Standards Projects Supporting Semantics Management Open Forum 2005 on Metadata Registries 14:45 to 15:30 13 April 2005 Larry Fitzwater.
SPEEDING UP THE STANDARDS DEVELOPMENT PROCESS Standards Coordination Conference Don Deutsch, Vice President Standards Strategy & Architecture Oracle Corporation.
Fax: (703) DoD BIOMETRICS PROGRAM DoD Biometrics Management Office Phone: (703)
1 ISO/PC 283/N 197 ISO Current status of development November 2015.
1 The FGDC Standards Program Presented by Julie Binder Maitra FGDC Standards Coordinator To Interagency Council on Standards Policy June 4, 2003.
Proposed Policy on Endorsement or Recommendation of External Standards Presented by Julie Binder Maitra FGDC Standards Coordinator To FGDC Coordination.
1 May 30, 2007 U.S. – China Symposium on Active Industry Participation in Standardization Overview of U.S. Participation in ISO and IEC.
EbXML Semantic Content Management Mark Crawford Logistics Management Institute
1 Testing for Medical Devices Communications Lynne Rosenthal National Institute of Standards and Technology Information Technology Laboratory
Ketan Mehta March 3, 2006 PIV Data Model Testing Ketan Mehta March 3, 2006.
ISO’s standardization approach to security, privacy and trust
WG3 report on Biometric Data Format and Related Standards
ISO/IEC JTC 1/SC 7 Working Group 42 - Architecture Johan Bendz
ISO/IEC Joint Technical Committee 1 ISO/IEC JTC 1
ISO Smart and Sustainable Cities developments
Kazunori MATSUO, TTC Cloud Computing Advisory Group
SPEEDING UP THE STANDARDS DEVELOPMENT PROCESS
ISO/IEC Joint Technical Committee 1 ISO/IEC JTC 1
iECM Briefing: XML Community of Practice
XCBF - XML Common Biometric Format
ISO Smart and Sustainable Cities developments
2016 INCITS Officer’s Symposium
Presentation transcript:

Hosted by: June 23-26, 2003 New York City State of Biometric Standards Jeff Stapleton, Manager Information Risk Management (314) Chair X9F4 Chair WG10

Hosted by: June 23-26, 2003 New York City 1 Agenda – Biometric Standards Standards Bodies –International Standards Bodies –USA Domestic Standards Bodies State of the Standards –Past Achievements –Present Activity –Future Work in Progress Who are they? What Are they doing?

Hosted by: June 23-26, 2003 New York City 2 International Standards Bodies International Organization for Standardization International Electrotechnical Commission Joint Technical Committee One SC 17 Cards & Personal Identification SC 17 Cards & Personal Identification SC 27 IT Security Techniques SC 27 IT Security Techniques SC 37 Biometric Technology SC 37 Biometric Technology TC 68 Banking, Securities and Financial services TC 68 Banking, Securities and Financial services SC 2 Security and General Banking Operations SC 2 Security and General Banking Operations Formal Liaison Relationships Relative to Biometric Standards

Hosted by: June 23-26, 2003 New York City 3 Informal Bodies USA Standards Bodies International Organization for Standardization International Electrotechnical Commission Joint Technical Committee One Accredited Standards Committee USA National Standards Body BioAPI Consortium

Hosted by: June 23-26, 2003 New York City 4 US Interactive Relationships Financial Services Security Financial Services Industry Biometric Security Retail Banking Public Key Infrastructure incits IT Security T4 M1 B10 SC27 SC37 SC17 Biometric Technology ID Card Technology X9A X9F X9F5 X9F4 X9F6 TC68 SC2 SC6 WG10 WG8 WG6 Retail Bank Card Security Liaison Relationship US TAG Relationship Industry Relationship

Hosted by: June 23-26, 2003 New York City 5 ISO Overview Established –146 National Standards Bodies –94 Member Bodies USA is a Member Body with a National Standards Body – American National Standards Institute Over 200 Technical Committees –TC 1 Screw Threads … –TC 68 Banking and Financial Services … –TC 215 Health Informatics International Organization for Standardization

Hosted by: June 23-26, 2003 New York City 6 TC 68 Overview International Organization for Standardization Develops international technical standards –Financial Services Industry –Including banking and securities Subcommittees –SC 2 Security Management and General Banking Operations Biometrics, Public Key Infrastructure (PKI), Security Guidelines –SC 4 Securities and Related Financial Instruments –SC 6 Retail Financial Services Including PIN management, key management, and cryptographic hardware devices used in the Retail Financial Services Cardholder at ATM and Point-of-Sale (POS) Terminals

Hosted by: June 23-26, 2003 New York City 7 JTC1 Overview Established early 1980’s –38 Liaison Members –94 National Member Bodies USA is a Member Body with a National Standards Body – American National Standards Institute 18 Active Subcommittees … –SC 17 Cards & Personal Identification INCITS/B10 –SC 27 IT Security Techniques INCITS/T4 –SC 37 Biometrics (established 2002) INCITS/M1 Joint Technical Committee One

Hosted by: June 23-26, 2003 New York City 8 JTC1/SC37 Overview Established June 2002www.jtc1www.jtc1 –First meeting held December 2002 –Scope is biometric technologies File formats, APIs, application profiles, testing… –Excluded from SC37 scope SC17 biometrics for cards and personal identification SC27 biometric security and evaluation methodologies –Formal Liaisons include SC37 to SC17 SC37 to SC27

Hosted by: June 23-26, 2003 New York City 9 Overview Founded in 1918 as a membership-based, not-for-profit organization, ANSI is … –A coordinator and facilitator of the U.S. voluntary consensus standards and conformity assessment system –An accreditation body for U.S. standards developers, U.S. Technical Advisory Groups and U.S. certification programs –The forum for the U.S. standards and conformity assessment communities American National Standards (ANS) Developers –Currently more than 270 ANSI accredited standards developers, representing 200 distinct entities –Not all standards developed by these organizations are submitted for consideration as ANS

Hosted by: June 23-26, 2003 New York City 10 X9 Overview Financial Services Industry –X9A Subcommittee on Retail BankingTC68/SC6 –X9B Subcommittee on Check Processing –X9C Consumer Protection (established 2003) –X9D Subcommittee on SecuritiesTC68/SC4 –X9F Subcommittee on Information SecurityTC68/SC2 X9F1 Cryptographic Tools X9F3 Cryptographic Protocols X9F4 Cryptographic Applications – X9.84 Biometrics X9F5 PKI Policy and Practices X9F6 Management and Security – Retail Banking –X9 WG1 Privacy Accredited Standards Committee

Hosted by: June 23-26, 2003 New York City 11 Overview Information Technology Standards –Formerly X3 Committee –36+ Technical Committees B10 Identification Cards and Related DevicesSC17 –AAMVA Driver License / Identification Standard J16 Programming Language C++ … L3 Audio, Picture, Multimedia, and Hypermedia … M1 Biometrics (established 2002) SC37 –ANS INCITS BioAPI, NISTIR 6529-A Common Biometric Exchange File Format (CBEFF) T4 Security Techniques …SC27 –ASN.1 Extended Encoding Rules (XER) incits International Committee for IT Standards

Hosted by: June 23-26, 2003 New York City 12 INCITS/M1 Overview Established 2001 –55+ Companies and organizations membership –US TAG to JTC1/SC37 Task Groups ( current organization ) –M1.1 Biometric Data Interchange Formats –M1.2 Biometric Technical Interfaces –M1.3 Biometric Profiles –M1.4 Biometric Performance Testing and Reporting

Hosted by: June 23-26, 2003 New York City 13 Overview Established –Originally founded as SGML Standard Generalized Markup Language (SGML) Renamed in 1998 – Extensible Markup Language (XML) –600+ Corporate and Individual Members –100+ Countries including United Nations (ebXML) –XML Common Biometric Format (XCBF) Technical Committee Established February 2002 XCBF patron format of NISTIR 6529-A CBEFF XCBF based on ASN.1 schema in X XCBF conforms to XML Encoding Rule (XER) in X.693 XCBF relies on X9.96-draft Cryptographic Message Syntax (CMS) Organization for the Advancement of Structured Information Standards

Hosted by: June 23-26, 2003 New York City 14 Overview Established –Co-hosted by NIST and NSA Focal point for biometric research… Operate discuss group Operate information line BIOMETRics ( ) –Working Groups Common Biometric Exchange File Format (CBEFF) Biometrics Interoperability, Performance, and Assurance –NISTIR CBEFF –NISTIR 6529-A-2002 CBEFF

Hosted by: June 23-26, 2003 New York City 15 Overview Established –Focus was to harmonize the various biometric APIs BioAPI Specification version 1.0 – March 2000 Reference implementation version 1.0 – September 2000 BioAPI Specification & implementation version 1.1 – March 2001 Working Groups –Applications (AWG) – top level interface of the BioAPI –External (XWG) – transition to other standards bodies –Reference Implementation (RWG) – reference implementation –Conformance Test (CTWG) – conformance test suite BioAPI Consortium

Hosted by: June 23-26, 2003 New York City 16 ISO/IEC JTC1/SC17 FDIS 7816 Part Existing Standards US StandardsISO/IEC JTC1US SpecificationsISO TC68 OASIS XCBF ANS X Biometric Security ISO TC68/SC2 CD ballot - NISTIR 6529-A CBEFF 2002 ISO/IEC JTC1/SC37 CD ballot -- ANS INCITS BioAPI ISO/IEC JTC1/SC37 CD ballot BioAPI 2001 Version 1.1 -AAMVA DL/ID WSQ 1993 FBI Fingerprint Compression ---

Hosted by: June 23-26, 2003 New York City 17 CBEFF Biometric Architecture Biometric Service Provider BioAPI Framework Application BIR XCBF Extended Markup Language (XML) Cryptographic Service Provider X9.84 Biometric Security ASN.1 Biometric Validation Control Objectives ICC

Hosted by: June 23-26, 2003 New York City 18 INCITS/M1 Work in Progress M1.1 Task Group – Biometric Data Formats –Finger Pattern Based Interchange Format –Finger Minutiae Format for Data Interchange –Finger Image Based Interchange Format –Face Recognition Format for Data Interchange –Iris Interchange Format –Signature / Sign Image Based Interchange Format Digitized signature (not PKI digital signature) Low level data interoperability –Vendor “A” format captured by vendor “B” device –Vendor “A” format processed by vendor “C” system

Hosted by: June 23-26, 2003 New York City 19 INCITS/M1 Work in Progress M1.2 Task Group – Biometric Interfaces –INCITS BioAPI, NISTIR 6529-A CBEFF –Interoperability between biometric components & subsystems –Security mechanisms for stored and transmitted data X Biometric Information Management and Security –Reference model for multi-vendor systems High level process interoperability –Functional calls Fetch sample, Create template, Matching … –Application calls Enroll, Identify, Verify …

Hosted by: June 23-26, 2003 New York City 20 INCITS/M1 Work in Progress M1.3 Task Group – Biometric Profiles –Interoperability and Data Interchange, Biometric Based Verification and Identification of… –Transportation Workers –Border Crossing –Point-of-Sale (POS) X for the Financial Services Industry Industry specific needs –To be determined, initial meeting June 9-11 in Seattle WA

Hosted by: June 23-26, 2003 New York City 21 INCITS/M1 Work in Progress M1.4 Task Group – Performance and Testing –Biometric metric definitions and calculations –Testing performance –Test reporting Ongoing biometric technology issue… –False Match Rate (a.k.a., False Acceptance Rate) –False Non-Match Rate (a.k.a., False Reject Rate) –Failure to Enroll Rate –To be determined, initial meeting June 11 in Seattle WA

Hosted by: June 23-26, 2003 New York City 22 JTC1/SC37 Work in Progress SG 01 Harmonized Biometric Vocabulary –No specific M1 correlation SG 02 Biometric Technical Interfaces –M1.2 Task Group – Biometric Interfaces –US submission CD ballot comments BioAPI –US submission CD ballot comments CBEFF SG 03 Biometric Data Interchange Formats –M1.1 Task Group – Biometric Data Formats Work sorted by Study Group / Special Group:

Hosted by: June 23-26, 2003 New York City 23 JTC1/SC37 Work in Progress SG 04 Biometric Application Profiles –M1.3 Task Group – Biometric Profiles SG 05 Biometric Testing and Reporting –M1.4 Task Group – Performance and Testing SG 06 Cross-Jurisdictional and Societal Aspects –No specific M1 correlation Work sorted by Study Group / Special Group:

Hosted by: June 23-26, 2003 New York City 24 Other Work in Progress TC68/SC2/WG10 –CD in ballot (X ) due August 2003 JTC1/SC27 –Biometric security in cooperation with TC68/SC2 JTC1/SC17 –ISO 7816 Information Technology – Identification Cards – Integrated Circuit(s) Cards with Contacts Part 11: Personal verification through biometric methods International Civil Aviation Organization (ICAO) –Global Biometric Initiative with JTC1/SC17

Hosted by: June 23-26, 2003 New York City 25 Chronology Summary Pre-2000 –June 1993 – FBI Fingerprint Compression WSQ published –November 1995 – Biometric Consortium established –April 1998 – BioAPI Consortium established –January 1999 – X9F4 assigned NWI X9.84 Year 2000 –March 2000 – BioAPI Specification v1.0 published –June 2000 – AAMVA Drivers License / Identification published –December 2000 – ISO/IEC CD 7816 ICC Part 11 Biometrics ballot

Hosted by: June 23-26, 2003 New York City 26 Chronology Summary Year 2001 –January 2001 – NISTR 6529 CBEFF published –March 2001 – ANS X published (BioAPI v1.0) –March 2001 – BioAPI Specification v1.1 published –March 2001 – NIST 6529 CBEFF published –November 2001 – INCITS/M1 established –December 2000 – ISO/IEC DIS 7816 ICC Part 11 Biometrics ballot Year 2002 –February 2002 – NISTR 6529-A CBEFF published –March 2002 – ANS INCITS (BioAPI v1.1) published –March 2002 – CTST Linden Award presented to Cathy Tilton –June 2002 – JTC1/SC37 established –December 2002 – ISO/IEC FDIS 7816 ICC Part 11 Biometrics ballot

Hosted by: June 23-26, 2003 New York City 27 Chronology Summary Year June 2003 (so far) –February 2003 – JTC1/SC37 CD ballot comments BioAPI –February 2003 – JTC1/SC37 CD ballot comments CBEFF –February 2003 – XCBF 1.0 Committee Specification published –June 2003 – ANS X Biometric Security published –June 2003 – TC68 CD in ballot (X ) Year July 2003 and beyond… –ISO 7816 ICC Part 11 Biometrics –ISO Standards on Biometric Technology –ISO Standards on Biometric Security –ISO Standards on Industry Applications Financial Services Industry Transportation Industry and government Immigration Services

Hosted by: June 23-26, 2003 New York City 28 Standards Conclusion Significant advances in the last 36 months –ANS INCITS BioAPI –ANS X Biometric Security –ISO FDIS 7816 ICC Part 11 Biometrics –NISTIR 6529-A CBEFF Further work in the next 36 months –ISO Biometric Technology Standards –ISO Biometric Security Standards –ISO Biometric Application Standards