The VVSG 2005 Revision Overview EAC Standards Board Meeting February 26-27, 2009 John P. Wack NIST Voting Program National Institute.

Slides:



Advertisements
Similar presentations
TGDC Meeting, December 2011 Review of VVSG 1.1 Nelson Hastings, Ph.D. Technical Project Leader for Voting Standards, ITL
Advertisements

TGDC Meeting, December 2011 Usability and Accessibility (U&A) Research Update Sharon J. Laskowski, Ph.D.
12/9-10/2009 TGDC Meeting Ballot On Demand David Flater National Institute of Standards and Technology
IEEE P1622 Meeting, Oct 2011 IEEE P1622 Meeting October 24-25, 2011 Overview of IEEE P1622 Draft Standard for Electronic Distribution of Blank Ballots.
TGDC Meeting, July 2011 Review of VVSG 1.1 Nelson Hastings, Ph.D. Technical Project Leader for Voting Standards, ITL
TGDC Meeting, Jan 2011 VVSG 1.1 Test Suite Status Mary Brady National Institute of Standards and Technology
United States Election Assistance Commission Pilot Program Testing and Certification Manual & UOCAVA Pilot Program Testing and Certification Manual & UOCAVA.
Voting System Qualification How it happens and why.
12/9-10/2009 TGDC Meeting TGDC Recommendations Research as requested by the EAC John P. Wack National Institute of Standards and Technology
TGDC Meeting, Jan 2011 UOCAVA Pilot Projects for the 2012 Federal Election Report from the UOCAVA Working Group Andrew Regenscheid National Institute of.
Improving U.S. Voting Systems The Voters’ Perspective: Next generation guidelines for usability and accessibility Sharon Laskowski NIST Whitney Quesenbery.
Accessibility and Usability Considerations for Remote Electronic UOCAVA Voting Sharon Laskowski, PhD National Institute of Standards and Technology
TGDC Meeting, July 2011 Overview of July TGDC Meeting Belinda L. Collins, Ph.D. Senior Advisor, Voting Standards, ITL
Copyright © 2013 by The McGraw-Hill Companies, Inc. All rights reserved.McGraw-Hill/Irwin.
Effectively Integrating Information Technology (IT) Security into the Acquisition Process Section 5: Security Controls.
Election Assistance Commission United States VVSG Technical Guidelines Development Committee (TGDC) NIST July 20, 2015 Gaithersburg,
Testing Summit Sacramento, CA November 28, 2005 Barbara Guttman National Institute of Standards and Technology
TGDC Meeting, Jan 2011 VVSG 2.0 and Beyond: Usability and Accessibility Issues, Gaps, and Performance Tests Sharon Laskowski, PhD National Institute of.
EAC-requested VVSG Research Overview and Status June 2008 Mark Skall Chief, Software Diagnostics and Conformance Testing Division National Institute of.
Demystifying the Independent Test Authority (ITA)
Questions/Comments: Ed Smith VVSG and Requirements Management Ed Smith January 13, 2011.
Information Systems Security Computer System Life Cycle Security.
© Grant Thornton | | | | | Guidance on Monitoring Internal Control Systems COSO Monitoring Project Update FEI - CFIT Meeting September 25, 2008.
Voting Systems. “The truth isn’t always popular, but it’s still the truth.” Groan-worthy quote from some lame character in some lame Hallmark Channel.
NIST HAVA-Related Work: Status and Plans June 16, 2005 National Institute of Standards and Technology
Chapter 7 Auditing Internal Control over Financial Reporting McGraw-Hill/Irwin ©2008 The McGraw-Hill Companies, All Rights Reserved.
Feb Software Development and IT Security at NOAA/NESDIS/NODC John Relph and Ken Casey NOAA National Oceanographic Data.
Standards in Elections: NIST and the Help America Vote Act Lynne S. Rosenthal National Institute of Standards and Technology
IEEE P1622 Meeting, Feb 2011 Common Data Format (CDF) Update John P. Wack National Institute of Standards and Technology
PA Department of Environmental Protection Continuous Source Monitoring Manual (Manual, Revision 8)
Accreditation for Voting Equipment Testing Laboratories Gordon Gillerman Standard Services Division Chief
Usability and Accessibility Working Group Report Sharon Laskowski, PhD National Institute of Standards and Technology TGDC Meeting,
TGDC Meeting, December Common Data Format Directions John P. Wack National Institute of Standards and Technology
Briefing for NIST Acting Director James Turner regarding visit from EAC Commissioners March 26, 2008 For internal use only 1.
NIST Voting Program Activities Update February 21, 2007 Mark Skall Chief, Software Diagnostics and Conformance Testing Division.
VVSG: Usability, Accessibility, Privacy 1 VVSG, Part 1, Chapter 3 Usability, Accessibility, and Privacy December 6, 2007 Dr. Sharon Laskowski
Election Assistance Commission 1 Technical Guidelines Development Committee Meeting Certification Updates July 20, United States.
Archival Workshop on Ingest, Identification, and Certification Standards Certification (Best Practices) Checklist Does the archive have a written plan.
12/9-10/2009 TGDC Meeting Usability and Accessibility Progress and Challenges Sharon Laskowski, PhD National Institute of Standards and Technology
Making every vote count. United States Election Assistance Commission EAC Voting System Certification TGDC Meeting December 9-10, 2009.
Idaho Procedures M100 OPTICAL SCAN PRECINCT TABULATOR.
How and what to observe in e-enabled elections Presentation by Mats Lindberg, Election Adviser, Organisation for Security and Co-operation in Europe (OSCE)
TGDC Meeting, July 2010 Report of the UOCAVA Working Group John Wack National Institute of Standards and Technology DRAFT.
1 The Evolution of Voting Systems Paul DeGregorio Vice Chairman Donetta Davidson Commissioner The U.S. Election Assistance Commission.
NIST Voting Program Page 1 NIST Voting Program Lynne Rosenthal National Institute of Standards and Technology
NIST Voting Program Barbara Guttman 12/6/07
TGDC Meeting, July 2011 Voluntary Voting System Guidelines Roadmap Nelson Hastings, Ph.D. Technical Project Leader for Voting Standards, ITL
TGDC Meeting, Jan 2011 Help America Vote Act (HAVA) Roadmap Nelson Hastings National Institute of Standards and Technology
TGDC Meeting, July 2010 Report on Other Resolutions from Dec 2009 TGDC Meeting John Wack National Institute of Standards and Technology
TGDC Meeting, July 2010 Report on Logging Requirements in VVSG 2.0 Nelson Hastings National Institute of Standards and Technology
TGDC Meeting, Jan 2011 Common Data Format (CDF) Update John P. Wack National Institute of Standards and Technology
Audit Evidence Process
NIST Voting Program Activities Update January 4, 2007 Mark Skall Chief, Software Diagnostics and Conformance Testing Division.
Next VVSG Training Standards 101 October 15-17, 2007 Mark Skall National Institute of Standards and Technology
1 DECEMBER 9-10, 2009 Gaithersburg, Maryland TECHNICAL GUIDELINES DEVELOPMENT COMMITTEE Commissioner Donetta Davidson.
The VVSG Version 1.1 Overview Matthew Masterson Election Assistance Commission
EAC-requested VVSG Research Overview and Status June 2008 Mark Skall Chief, Software Diagnostics and Conformance Testing Division National Institute of.
TGDC Meeting, July 2010 Overview of NIST Activities and TGDC Meeting Agenda Martin Herman, PhD National Institute of Standards and Technology
Creating Accessibility, Usability and Privacy Requirements for the Voluntary Voting System Guidelines (VVSG) Whitney Quesenbery TGDC Member Chair, Subcommittee.
12/9-10/2009 TGDC Meeting The VVSG Version 1.1 Overview John P. Wack National Institute of Standards and Technology
TGDC Meeting, Jan 2011 Development of High Level Guidelines for UOCAVA voting systems Andrew Regenscheid National Institute of Standards and Technology.
TGDC Meeting, Jan 2011 Path Forward for FY11 UOCAVA Activities Nelson Hastings National Institute of Standards and Technology
Briefing for the EAC Public Meeting Boston, Massachusetts April 26, 2005 Dr. Hratch Semerjian, Acting Director National Institute of Standards and Technology.
Next VVSG Training Security: Testing Requirements October 15-17, 2007 Nelson Hastings Alicia Clay Jones National Institute of Standards and Technology.
12/9-10/2009 TGDC Meeting NIST-developed Test Suites David Flater National Institute of Standards and Technology
Update: Revising the VVSG Structure Sharon Laskowski vote.nist.gov April 14, 2016 EAC Standards Board Meeting 1.
TGDC Meeting, Jan 2011 VVSG 2.0 and Beyond: Usability and Accessibility Issues, Gaps, and Performance Tests Sharon Laskowski, PhD National Institute of.
TGDC Meeting, July 2011 VVSG 1.1 Test Suite Status Mary Brady Manager, NIST Information Systems Group, Software and Systems Division, ITL
12/9-10/2009 TGDC Meeting Alternatives to Software Independence Nelson Hastings National Institute of Standards and Technology
Improving Reliability of Direct Recording Electronic Voting Systems
Presentation transcript:

The VVSG 2005 Revision Overview EAC Standards Board Meeting February 26-27, 2009 John P. Wack NIST Voting Program National Institute of Standards and Technology

2/26/2009 Page 2 Overview Background and issues Selection criteria for VVSG-NI material Overview of the ported material Associated testing material Next steps

2/26/2009 Page 3 Terminology VVSG – Voluntary Voting System Guidelines VVSG 2005 Revision - the revised version of VVSG 2005 VVSG-NI - VVSG Next Iteration - the TGDC Recommendations of 2007

2/26/2009 Page 4 Background and Issues VVSG 2005 Required currently for new voting systems and significant updates to existing An incremental update to 2002 VSS, but major gaps exist But, no uniform, public test suites available for labs to use VVSG-NI Complete rewrite of VVSG 2005 Improved in many areas, e.g., security, reliability benchmarks Tests being written, will be publicly available Still in public review process, years from being required

2/26/2009 Page 5 Idea is to bridge gap between VVSG 2005 and VVSG-NI standards Port certain VVSG-NI material into VVSG 2005 Revision Bring along the tests associated with the ported VVSG-NI material Do this in roughly one year VVSG 2005 Revision

2/26/2009 Page 6 The material improves testing of voting systems and fills major gaps The material does not require further research, is substantially ready for inclusion now It does not involve changes in hardware or significant changes in software Revisions can be performed in a year Selection Criteria

2/26/2009 Page 7 Usability and Accessibility Security VVPAT Electronic records & Cryptography System security specifications External interface Core S/W workmanship Reliability & Accuracy Humidity QA/CM Overview of Ported Material

2/26/2009 Page 8 Human Factors VVSG 2005 material mostly new, based on research, best practices, and standards relating to human factors and the design of user interfaces VVSG-NI material consists of minor modifications, clarifications, and a few additions to VVSG 2005 Usability performance benchmarks Poll worker usability requirements Usability performance benchmarks still being researched, will not be ported

2/26/2009 Page 9 Security - 1 VVSG 2005 VVPAT section all new material, based on research, state laws and regulations, best practices, and standards VVSG-NI material primarily a maintenance level upgrade to VVSG 2005 Improves the auditability and usability of the paper records Ensures that sufficient information is printed on the record so that the systems can be used for early voting and in multi- precinct vote centers

2/26/2009 Page 10 Electronic records requirements New requirements will be developed to require digital signatures on the electronic records Software cryptographic modules can be used in place of hardware modules System security specifications (documentation) requirements to assist test labs; new templates will be created Security - 2

2/26/2009 Page 11 VVSG 2005 contains a setup validation requirement to help ensure that appropriate certified software is loaded Permits an inquiry of the voting system software independent of the voting system software itself Especially important in that VVSG 2005 permits DREs with no independent audit trail This requirement would be implemented with special hardware As an alternative, new requirements will be developed to help ensure that appropriate certified software is loaded Voting software must be digitally signed Digital signatures will be checked before loading Can be implemented in software Security - 3

2/26/2009 Page 12 Core Areas - 1 Software workmanship requirements for coding standards, software integrity checks (e.g., error checking) Reliability & accuracy benchmarks (failures per ballot, et al.) Will replace VVSG 2005’s 163 hour MTBF benchmark Will not include VVSG-NI’s volume test requirements Requirements for reliability & accuracy to be evaluated based on performance over course of entire testing engagement

Core Areas - 2 Humidity - updated to require operational humidity testing as part of hardware tests To be harmonized with EAC’s Testing and Certification manual and/or ported to VVSG 2005 Revision: Test plan and test report documentation requirements Quality Assurance and Configuration Management requirements

2/26/2009 Page 14 Associated Testing Material All ported material comes with associated tests Tests will be available publicly Will assist labs by giving them a uniform test suite for the ported material Can be used as a common basis for developing device-specific tests

2/26/2009 Page 15 Next Steps EAC and NIST address public review comments to VVSG-NI material to be ported NIST to port updated VVSG-NI material to VVSG 2005 Revision Adjust for differences in format and usage of terms EAC to develop version for public review Highlight material that is new or updated EAC to issue final version and associated tests

2/26/2009 Page 16 Questions