19
SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

Embed Size (px)

Citation preview

Page 1: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

SCCIDE TRUST & Functional Model

for

IDE Standards Identification

G. WhiteheadJanuary/February 2013

Page 2: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

2

IDE Functional & Trust Model - Work Summary

• IDE Levels & Chain of Trust Identified• Evidence of Trustworthiness Model Developed• End User Trust Policy/Criteria Sources Identified• Types of Assurances (to show Trustworthiness) Identified• IDE Processes & Systems Identified & Studied• Need for “Assurance Standards” Analyzed• Awareness of Standards Availability Developed• Standards Adoption/Adaptation Criteria Studied• Template for Standards Evaluation/Disposition

Created

Page 3: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

3

Standards at the Systems & Processes Level of Trust

Page 4: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

4

IDE Trust Model

Page 5: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

5

Online: Banking Dating Socializing Gambling Lotteries Shopping Auctions Discovery Help And………………………..

Trust Policies & Criteria Come From End Users:

Page 6: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

6

Potential User Group

Page 7: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

7

Evidence of Trust Required by RP’s or End Users

Page 8: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

8

Trustworthiness will Come From Delivery of:

• Privacy Assurance• Entity Identity Assurance• Entity Suitability Assurance (if provided)

• Entity Authentication Assurance• Security Assurance of Assurance Providers• IDE System & Processes – Security Assurance• IDE – Integrity Assurance (no breaches of trust)

• IDE Transparency Assurance• Recourse Assurance (ability to litigate assurance failures)

• Quality Assurance

Page 9: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

9

Entity Trust Levels

Page 10: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

10

Page 11: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

11

Page 12: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

12

Standards at the Systems & Processes Level of Trust

Page 13: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

Root of Trust Standard Requirements & Availability

Page 14: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

14

Page 15: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

15

Template for Standards Evaluation & Disposition

Page 16: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

16

Page 17: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

17

Page 18: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

18

Page 19: SCC IDE TRUST & Functional Model for IDE Standards Identification G. Whitehead January/February 2013

19