Kantara Initiative Privacy Framework Overview and Value Proposition

  • Slides: 11
Download presentation
Kantara Initiative Privacy Framework Overview and Value Proposition 13 May 2011

Kantara Initiative Privacy Framework Overview and Value Proposition 13 May 2011

Scope of Privacy and Public Policy WG Activity in Kantara Digital Identity Trust Frameworks

Scope of Privacy and Public Policy WG Activity in Kantara Digital Identity Trust Frameworks Assurance Privacy Trust Get Involved Kantara Initiative builds bridges. . .

Kantara Initiative: Assurance and Interoperability Program Work Groups KANTARA INITIATIVE PROGRAMS NONCERTIFICATION INTEROPERABILITY ASSURANCE

Kantara Initiative: Assurance and Interoperability Program Work Groups KANTARA INITIATIVE PROGRAMS NONCERTIFICATION INTEROPERABILITY ASSURANCE HARMONIZATION Inter. Op Review Board (IRB) Assurance Review Board (ARB) • Certification User-Centric, Jurisdiction and Vertical Based • Demos • Accreditation BCTF DG HIA WG WORK & DISCUSSION GROUP ACRONYMS: • (BCTFDG) Business Cases for Trusted Federation • (e. GOV) e. Government • (EUMDG) European Use Case and Market • (FIWG) Federation Interoperability • (IOP) Interoperability • (HIAWG) Heath Identity Assurance Consumer ID • (IAWG) Identity Assurance • (Info Sharing WG) Information Sharing • (P 3 WG) Privacy and Public Policy e. GOV IA WG Japan • (Consumer ID) Consumer Identity • (Japan. WG) Japan EUM DG Info. Share Telco ID • (Telco ID) Telecommunication Identification • (ULX) User Login Experience FI WG IOP P 3 WG ULX UMA • (UMA) User Managed Access

Kantara – An anchor for Privacy Capability Kantara’s IAF demonstrates experience in developing components

Kantara – An anchor for Privacy Capability Kantara’s IAF demonstrates experience in developing components of a trust framework. Kantara considers Privacy a core requirement and an opportunity when designing identity interoperability. P 3 WG is a dedicated work group that liaises with existing privacy standards efforts and other Kantara WGs. P 3 WG sponsors the Privacy Framework subgroup (P 3 -PFSG) which is developing privacy assurance with a profile approach to a complete trust framework.

Plug-in Components The Privacy Framework will enhance credential and attribute management with profiles usable

Plug-in Components The Privacy Framework will enhance credential and attribute management with profiles usable across federations and jurisdictions. Authentication, authorization and access control need to be considered separately for each deployment of a federated identity system. The Privacy Framework is focused on providing a structure for the application of privacy principles in order to generate a baseline for assessment/audit capability in federated identity management.

Privacy Baseline impact on IAF certification: (as applied to) US ICAM TRUST FRAMEWORK PROVIDER

Privacy Baseline impact on IAF certification: (as applied to) US ICAM TRUST FRAMEWORK PROVIDER REQ’S BIO-PHARMACEUTICAL FEDERATION CORE CSP REQUIREMENTS FINANCIAL SERVICES NETWORK CORE REQUIREMENT SET HIGHER EDUCATION FEDERATION CORE REQUIREMENT SET Identity Assurance Framework SAC for AL(n) – {n: 1 -4} IAF ADOPTION IAF PROFILES

Privacy Framework-SG development and operations: Phase 1: develop privacy principles into assessment criteria for

Privacy Framework-SG development and operations: Phase 1: develop privacy principles into assessment criteria for privacy certification of IAF or industry profiles in federated identity assurance deployments Phase 2: develop a set of recommendations for broader privacy framework certification based on merging privacy standards and an audit of PKI practices Phase 3: continued support and development of a Kantara Trust/Privacy Framework

Privacy Framework Roadmap Reference Discovery Document - Complete Privacy Principles Analysis – June 2011

Privacy Framework Roadmap Reference Discovery Document - Complete Privacy Principles Analysis – June 2011 Privacy Framework Wireframe – Aug 2011 Draft released for comment – Nov 2011 Privacy Framework v 1. 0 integrated into Kantara Trust Framework - Q 1 2012

What We Ask? Volunteer time and effort to the P 3 WG to help

What We Ask? Volunteer time and effort to the P 3 WG to help complete the work. Identity service organizations adopt the IAF and eventual Privacy Framework as their standard for Identity Assurance Financial sponsorship (through membership and/or directed contributions) be made to support the development of a Privacy Framework and Certification Program

Get Involved: Join our Community Website: http: //kantarainitiative. org Community Mail List: http: //kantarainitiative.

Get Involved: Join our Community Website: http: //kantarainitiative. org Community Mail List: http: //kantarainitiative. org/listinfo/community Identity Assurance Accreditation and Certification Program: http: //kantarainitiative. org/confluence/display/Identity+Assurance+Certification Membership Documents: http: //kantarainitiative. org/wordpress/membership/

More Information: Accepting applications now! Visit our Assurance Certification Center http: //kantarainitiative. org/confluence/x/EYCYAQ Connect

More Information: Accepting applications now! Visit our Assurance Certification Center http: //kantarainitiative. org/confluence/x/EYCYAQ Connect with Executive Director Joni@ieee-isto. org