Working Group 6: Secure Hardware and Software – Security by Design Status Update December 3, 2015 Joel Molinoff, Co-Chair (CBS) Brian Scarpelli, Co-Chair.

Slides:



Advertisements
Similar presentations
TIA Activities Supporting Wireless Alerts David Su Chief, Advanced Network Technologies Division NIST SOURCE:TIA TITLE:TIA Activities Supporting Wireless.
Advertisements

Financial Systems Needs Assessment Project Update Monthly Research Administrators Meeting March 11, 2010.
6th Meeting of the Steering Committee of the INTOSAI Committee on the Knowledge Sharing and Knowledge Services (Goal 3) Cairo, Egypt October 14 and 15,
Working Group 2: Next Generation Alerting December 16, 2011 Co-Chairs: Damon Penn, Asst. Administrator, Nat’l Continuity Programs, DHS-FEMA Scott Tollefsen,
1 LBNL Enterprise Computing (EC) January 2003 LBNL Enterprise Computing.
Working Group #3 E9-1-1 Location Accuracy December 16, 2011 Craig Frost, Verizon Wireless, Co-Chair Stephen J. Wisely, APCO International, Co-Chair.
The Israel Telecommunication Corp. Limited IT Division 2003 November Production Readiness Reviews of IT Systems in Bezeq 1 Production Readiness Reviews.
Working Group 2: Next Generation Alerting September 12, 2012 Co-Chairs: Damon Penn, Assistant Administrator, National Continuity Programs, DHS-FEMA Scott.
1 Federal Communications Commission (FCC) Communications Security, Reliability and Interoperability Council (CSRIC) Working Group 1A - Public Safety Consolidation.
ISO 9001:2015 Revision overview - General users
Halifax, 31 Oct – 3 Nov 2011ICT Accessibility For All ITU-T Focus Group on Cloud Computing Olivier Colas, ITU-T FGCC Vice-Chairman Document No: GSC16-PLEN-45.
Federal Communications Commission Communications Security, Reliability and Interoperability Council Working Group 6 – Best Practice Implementation Stacy.
IWCE Conference - Project 25 Compliance Assessment Program and Beyond Wednesday, March 26, 2014 – 4:15-5:30 PM Chris Essid Deputy Director DHS Office of.
IEEE S2ESC Report1 Software And Systems Engineering Standards Committee (S2ESC) Paul R. Croll S2ESC Sponsor Chair June 2004 Report.
Industry Collaboration to Achieve Network Security The Network Reliability and Interoperability Council Jeffery M. Goldthorp Chief – Network Technology.
Web-centric BusinessNRIC V – February 27, 2001 NRIC V Council Meeting - February 27, 2001 Focus Group 2.B1 Network Reliability - Data Reporting & Analysis.
Working Group #10: 911 Prioritization September, 2012 Jeanna Green, Network Development 911, Sprint, Co-Chair Thera Bradshaw, CEO, TKC Consulting, Co-Chair.
Update on Current EGNRET Projects APEC EGNRET 23 Meeting Christchurch, New Zealand ~ November 10-12, 2004 Jean Ku National Renewable Energy Lab, USA Cary.
GENERAL DYNAMICS Communication Systems “Process Maturity: Things that Work” Boston SPIN Panel April 18, 2000 Presenter: Carol Pilch.
The European Qualifications Framework for Lifelong Learning – Update on Recent Developments ReferNet Meeting 22 January 2009.
Update on IPv6 Transition U.S. Federal IPv6 Task Force Jane Coffin Co-Chair of the U.S. Federal IPv6 Task Force August 2011 – CITEL PCC.I, Mar del Plata,
ESMO Clinical Practice Guidelines: Consensus Conference (CC) SOP Edited by EDC-SC September 2013.
Steering Committee Working Group 6 Best Practice Implementation October 7, 2010 Stacy Hartman Steve Malphrus Co-Chairs.
Oct. 5, 2009 MA HDC Meeting1 MA Health Disparities Council Working Group on Interpreter Services Update from Meeting #1 Measurable Standards of Practice.
March 14, 2000RTVISC Meeting1 Working Group #2 Report IEEE Rail Transit Vehicle Interface Standards Committee Meeting March 14, 2000.
December 6, 2002 M. Roden / D. Dautel FOCUS GROUP 1C Public Safety Report to NRIC VI Council December 6, 2002 Co-Chairs Mike Roden - Cingular Wireless.
Working Group 2: Next Generation Alerting March 22, 2012 Co-Chairs: Damon Penn, Asst. Administrator, Nat’l Continuity Programs, DHS-FEMA Scott Tollefsen,
National Institute of Standards and Technology Information Technology Laboratory 1 USG Cloud Computing Technology Roadmap Next Steps NIST Mission: To promote.
Working Group 8 – E9-1-1 Best Practices March 6, 2013 Robin Howard Chair WG 8 – E9-1-1 Best Practices.
Working Group #4: Network Security Best Practices March 22, 2012 Presenter: Tony Tauber, Comcast WG #4 Member Via teleconference: Rod Rasmussen, Internet.
Working Group #3 E911 Location Accuracy March 22, 2012 Stephen J. Wisely and Richard Craig, Co-Chair’s.
Work Group 4C Steering Committee Technical Options for E9-1-1 LOCATION ACCURACY October 7, 2010.
Focus Group 1B Cybersecurity Dr. Bill Hancock, CISSP Cable and Wireless America FG1B Chair
Working Group 8 – E9-1-1 Best Practices September 23, 2011 Robin Howard Chair WG 8 – E911 Best Practices.
Working Group on the Value and Benefits Chair´s Report 7th Meeting of the Steering Committee of the INTOSAI Committee on the Knowledge Sharing and Knowledge.
1 1 Cybersecurity : Optimal Approach for PSAPs FCC Task Force on Optimal PSAP Architecture Working Group 1 Final Report December 10 th, 2015.
Working Group 4B: Network Timing Single Source Risk Reduction Status Update September 21, 2015 Jennifer A. Manner, Chair.
Working Group 4A: Submarine Cable Resiliency Status Update
Working Group 3: Emergency Alert Systems Status Update December 3, 2015 Kelly Williams, Co-Chair National Association of Broadcasters Steve Johnson, Co-Chair.
Working Group 2: Emergency Alerting Platforms Status Update December 3, 2015 Farrokh Khatibi, Co-Chair (Qualcomm) Francisco Sánchez, Jr., Co-Chair (Harris.
March 10, 2005 Slide Defense Standardization Program Conference Presented by: Mary Saunders, ANSI-HSSP Co-Chair Presentation on the ANSI Homeland.
Working Group 5: Cybersecurity Information Sharing Status Update December 3, 2015 Christopher Boyer, Co-Chair (AT&T) Rod Rasmussen, Co-Chair (IID) Brian.
Working Group 1: Evolving 911 Services Status Update September 21, 2015 Jeff Cohen, Co-Chair (APCO International) Susan Sherwood, Co-Chair (Verizon)
Page 1 Structure of the Code Don Thomson, Working Group Chair and IESBA Member IESBA CAG Meeting April 10, 2013 New York.
Systems Analysis & Design AUTHOR: PROFESSOR SUSAN FUSCHETTO 10/24/
Working Group 1: Evolving 911 Services Status Update December 3, 2015 Jeff Cohen, Co-Chair (APCO International) Susan Sherwood, Co-Chair (Verizon)
Working Group 7: Cybersecurity Workforce Status Update December 03, 2015 Bill Boni, Co-Chair T-Mobile Drew Morin, Co-Chair FCC Liaison: Erika Olsen.
Working Group 4B: Network Timing Single Source Risk Reduction Status Update December 3, 2015 Jennifer A. Manner, Chair.
Working Group 3: Emergency Alert Systems Status Update September 21, 2015 Steve Johnson, Co-Chair National Cable & Telecommunications Association Kelly.
Working Group 8 – E9-1-1 Best Practices December 16, 2011 Robin Howard Chair WG 8 – E911 Best Practices.
Working Group 6: Secure Hardware and Software – Security by Design Status Update September 21, 2015 Joel Molinoff, Co-Chair (CBS) Brian Scarpelli, Co-Chair.
H OMELAND S ECURITY P HYSICAL S ECURITY (Focus Group 1A) Update to Council September 15, 2003 K ARL F. R AUSCHER Chair Homeland Security Physical Security.
Working Group 7: Cybersecurity Workforce Status Update September 21, 2015 Bill Boni, Co-Chair T-Mobile Drew Morin, Co-Chair TeleCommunication Systems FCC.
Agenda item 2.2 Progress on Target 1 Developments since CGBN of March 2012 CGBN Co-ordination Group for Biodiversity and Nature 13 th meeting – 06/09/12.
Working Group 2: Emergency Alerting Platforms Status Update September 21, 2015 Farrokh Khatibi, Co-Chair (Qualcomm) Francisco Sánchez, Jr., Co-Chair (Harris.
and LMAP liaison Document Number: IEEE R0 Date Submitted: Source: Antonio BovoVoice:
Working Group 3: Emergency Alert Systems Status Update March 16, 2016 Kelly Williams, Co-Chair National Association of Broadcasters Steve Johnson, Co-Chair.
Working Group 8: Priority Services CSRIC V Meeting March 16, 2016 Thomas Anderson, Co-Chair (Cisco) Bill Reidway, Co-Chair (Neustar)
Working Group 1: Evolving 911 Services Status Update March 16, 2016 Jeff Cohen, Co-Chair (APCO International) Susan Sherwood, Co-Chair (Verizon)
May 17, 2005 Slide 1 Presented by: Dan Bart, TIA and ANSI-HSSP Co-Chair May 17, 2005 Homeland Security Standards and the Role of the ANSI Homeland Security.
Working Group 7: Cybersecurity Workforce Status Update March 16, 2016 Bill Boni, Co-Chair T-Mobile Drew Morin, Co-Chair FCC Liaison: Erika Olsen.
The activities of civil society organisations in the European Year of Volunteering (EYV 2011) & the role of the EYV2011 Alliance.
TIA Update for PRS Mark Uncapher Director, Regulatory & Government Affairs, Telecommunications Industry Association October 28,
Jeju, 13 – 16 May 2013Standards for Shared ICT Thomas Goode General Counsel ATIS Alliance for Telecommunications Industry Solutions (ATIS) Update Document.
Working Group 6: Secure Hardware and Software – Security by Design Deliverable 2 Status Update June 22, 2016 Joel Molinoff, Co-Chair (CBS) Brian Scarpelli,
Working Group 1: Evolving 911 Services Status Update June 22, 2016 Jeff Cohen, Co-Chair (APCO International) Susan Sherwood, Co-Chair (Verizon)
ITU-T Focus Group on Cloud Computing
Opening - Launch of Phase 2
TCG’s Embedded System and IoT Focus
Hydrographic Services and Standards Committee
Presentation transcript:

Working Group 6: Secure Hardware and Software – Security by Design Status Update December 3, 2015 Joel Molinoff, Co-Chair (CBS) Brian Scarpelli, Co-Chair (Telecommunications Industry Association)

2 WG 6 Objectives Develop voluntary recommendations and best practices to enhance the security of hardware and software in the core public communications network Develop voluntary mechanisms to demonstrate success of recommendations/best practices

3 WG 6 Deliverables March 2016 – Security best practices recommendations September 2016 – Recommend voluntary attestation framework

4 WG 6 Members * Also a CSRIC member FNLNOrg JoelMolinoffCBS* (WG 6 co-chair) BrianScarpelliTIA* (WG 6 co-chair) PeterAllorIBM JonAmisDell JamesBeanJuniper Networks KevinBeaudryCharter* AlBolivarVerisign* JonBoyens NIST ChrisBoyerAT&T* JamieBrownCA Technologies RobCovoloCenturyLink* BrianDalyAT&T (ATIS)* MikeGellerCisco (ATIS)* AlexGerdenitschEchoStar* SteveGoeringerCable Labs KazuGomiNTT America StacyHartmanCenturyLink* FranckJournoudOracle MasatoKimuraNTT America DarrenKressT-Mobile* EthanLucarelliIridium* (Wiley Rein) FNLNOrg JenniferManner Echostar* GabrielMartinez DHS RobertMayer US Telecom Association* HeathMcGinnis Verizon* EliDourado Mercatus Center (GMU) AngelaMcKayMicrosoft TomofumiOkuboVerisign* RichardPerlottoShadow Server JeffGreeneSymantec GlenPirrottaComcast Cable* KallolRayComcast Cable* ChrisRoosenraadTWC* MichelleRosenthalT-Mobile* PeterRuffoZTE USA DorothySpears-DeanNASNA* MattTooleyNCTA* RaoVasireddyAlcatel-Lucent (TIA)* JoeViensTWC* EricWengerCisco ShinichiYokohamaNTT America FNLNOrg StevenMcKinnon FCC liaison EmilyTalaga FCC liaison

5 Background Recognizing the advantages of building security in to hardware and software (rather than retrofitting), FCC has urged industry to examine security by design practices for core network equipment – Examined by FCC Technological Advisory Council (TAC) in 2014 CSRIC IV’s WG 4 Final Report, Cybersecurity Risk Management and Best Practices, provides baseline/model for approach

6 Roster continues to reflect a healthy and diverse stakeholder community invested and interested in hardware/software security by design Using a three-phased approach to the development of WG 6 deliverables Holding recurring WG 6 calls on bi-weekly basis WG6 Status

7 Held in-person meeting on Nov 17: – Agreed to use NSRA 2012 “core network” definition – Agreed to incorporate both the perspectives of the service providers who have requirements for their vendors, as well as vendors and their secure development life cycle practices used to manage risk WG6 Status

8 Held in-person meeting on Nov 17: – Agreed that WG’s deliverable should sit at the principle level, and should be technology- and device-neutral – Agreed that the deliverable’s principles should draw from the existing body of standards and best practices developed for security by design – Formed new subgroup to aggregate security-by-design standards and best practices, and to identify common principles for the consideration of the full WG 6, by Dec 14 First conference call for subgroup: Dec 2 WG6 Status

9 WG 6 Schedule PHASE 1: Define Objectives, Scope, & Methodology PHASE 2: Analysis & Determine Findings PHASE 3: Conclusions & Recommendations : Deliverable Adopted by Full CSRIC 5

10 Next Steps Augment WG 6 membership with subject matter experts Finalize best practices documentation for review on December 14 Continue bi-weekly conference calls Provide periodic status updates to Steering Committee and Council