forked from usnistgov/OSCAL-Pages
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
updating issue1237 and addressing conflicts (#1289)
- Loading branch information
Showing
2 changed files
with
32 additions
and
24 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,12 +1,19 @@ | ||
--- | ||
title: OSCAL Mini Workshops Series | ||
heading: 3rd Open Security Controls Assessment Language (OSCAL) Workshop | ||
toc: | ||
enabled: true | ||
--- | ||
|
||
# OSCAL Mini Workshop Series | ||
|
||
The NIST [OSCAL](/) team is hosting a new series of mini workshops. They aim to address topics of interest for our community and to open this forum for its members to present their [OSCAL](/)-related work. Unless specifically stated, the workshops will not require a deep, technical understanding of [OSCAL](/), and the dialog is informal, allowing the community to interact with the presenters and with the [OSCAL](/) team members. | ||
The NIST [OSCAL](https://www.nist.gov/OSCAL) team is hosting a new series of mini workshops, that aims to address topics of interest for our community and to open this forum for its members to present their OSCAL-related work. Unless specifically stated, the workshops will not require a deep, technical understanding of OSCAL, and the dialog is informal, allowing the community to interact with the presenters and with the OSCAL team members. | ||
|
||
Please see below the call for proposals if you are interested in presenting your [OSCAL](/) work. To submit topics for discussion, please email us at [[email protected]]([email protected]). | ||
Please see below the call for proposals if you are interested in presenting your OSCAL work. To submit topics for discussion, please email us at [[email protected]](mailto:[email protected]). | ||
|
||
The [OSCAL](/) project and this workshop series are aligned with NIST’s mission of promoting U.S. innovation and industrial competitiveness by advancing measurement science, standards, and technology in ways that enhance economic security and improve our quality of life. NIST works to maximize its impact and mission fulfillment by positioning itself to anticipate future technology trends and develop the most important measurements and standards products that are aligned with industry drivers and needs. | ||
The OSCAL project and this workshop series are aligned with NIST’s mission of promoting U.S. innovation and industrial competitiveness by advancing measurement science, standards, and technology in ways that enhance economic security and improve our quality of life. NIST works to maximize its impact and mission fulfillment by positioning itself to anticipate future technology trends and develop the most important measurements and standards products that are aligned with industry drivers and needs. | ||
|
||
We encourage developers of control-oriented security tools, organizations that want to use or create [OSCAL](/)-based information to automate security assessment, and those planning to move towards continuous Authorization to Operate (cATO) to attend the workshops. | ||
We encourage developers of control-oriented security tools, organizations that want to use or create OSCAL-based information to automate security assessment, and those planning to move towards continuous Authorization to Operate (cATO) to attend the workshops. | ||
|
||
Who should attend: | ||
- Leaders in digital transformation and security automation from the government, private, and academic sectors; | ||
|
@@ -16,33 +23,33 @@ Who should attend: | |
|
||
## Call for Proposals | ||
|
||
NIST [OSCAL](/) Mini Workshop program committee is seeking timely, topical, and thought-provoking **technical** **presentations or demonstrations** highlighting [OSCAL](/) editorial tools, OSCAL-based security assessment automation processes, and Governance Risk and Compliance (GRC) tools supporting OSCAL formats for integration into such processes. | ||
NIST OSCAL Mini Workshop program committee is seeking timely, topical, and thought-provoking **technical** **presentations or demonstrations** highlighting OSCAL editorial tools, OSCAL-based security assessment automation processes, and Governance Risk and Compliance (GRC) tools supporting OSCAL formats for integration into such processes. | ||
|
||
**NIST is not endorsing any of the OSCAL tools or services presented and presentation or demos promoting such tools or services as opposed to focusing on the OSCAL-related technical aspects will not be permitted.** | ||
|
||
We encourage proposals from a diverse array of organizations and individuals with different perspectives, from the public and private sectors, international bodies, assessment and authorization (A&A), or certification and authorization (C&A) providers. | ||
|
||
Please find below the calendar of proposed dates. Before submitting a proposal, please consult the calendar and indicate the preferred date with your submission and the duration of your presentation (30 min or 60 min, including Q&A). We will do our best to update the calendar as soon as a submission is approved. | ||
|
||
Submit your proposal via email to [[email protected]]([email protected]), with the subject line: “OSCAL Workshop - [Date: yyyy/mm/dd]”, where the “Date” is the selected date from the calendar below. Please include in your submission a preassessment of the OSCAL knowledge level the audience will need using a 4-levels scale with level one (L1/bronze) being equivalent to novice and level four (L4/platinum) being an OSCAL expert. | ||
Submit your proposal via email to [[email protected]](mailto:[email protected]), with the subject line: “OSCAL Workshop - [Date: yyyy/mm/dd]”, where the “Date” is the selected date from the calendar below. Please include in your submission a preassessment of the OSCAL knowledge level the audience will need using a 4-levels scale with level one (L1/bronze) being equivalent to novice and level four (L4/platinum) being an OSCAL expert. | ||
|
||
## Workshops Calendar | ||
|
||
| Date | Time | Talk/Demo/Discussion | Presenter & Affiliation | Type | Knowledge Level | Notes | | ||
| ---- | ---- | ---------------------| ----------------------- | ---- | --------------- | ------ | | ||
| 2022/05/18 | 11:00AM-12:00PM EDT | 1. Compliance as Code for Big Bang Risk Management Framework (RMF) Control Mapping to Accelerate Department of Defense (DoD) Authorization to Operate (ATO) | Maj Camdon Cady, Chief Operating Officer, Platform One, US Airforce | presentation | L2 | | | ||
| | | 2. OSCAL Catalog Authoring Tool (CAT) | Dmitry Cousin, NIST |demo | L1 | | | ||
| 2022/06/15 | 11:00AM-12:00PM EDT | 1. Trestle - compliance as codeorchestrator and automation workflow | Dr. Anca Sailer, IBM | presentation | L3 | | | ||
| | | 2. | | | | | | ||
| 2022/07/13 | 11:00AM-12:00PM EDT | 1. | | | | | | ||
| | | 2. | | | | | | ||
| 2022/08/10 | 11:00AM-12:00PM EDT | 1. | | | | | | ||
| | | 2. | | | | | | ||
| 2022/09/07 | 11:00AM-12:00PM EDT | 1. | | | | | | ||
| | | 2. | | | | | | ||
| 2022/10/05 | 11:00AM-12:00PM EDT | 1. | | | | | | ||
| | | 2. | | | | | | ||
| 2022/11/02 | 11:00AM-12:00PM EDT | 1. | | | | | | ||
| | | 2. | | | | | | ||
| 2022/11/30 | 11:00AM-12:00PM EDT | 1. | | | | | | ||
| | | 2. | | | | | | ||
| Date | Time | Talk/Demo/Discussion | Presenter & Affiliation | Type | Knowledge Level | | ||
| ---- | ---- | ---------------------| ----------------------- | ---- | --------------- | | ||
| 2022/05/18 | 11:00AM-12:00PM EDT | 1. Compliance as Code for Big Bang Risk Management Framework (RMF) Control Mapping to Accelerate Department of Defense (DoD) Authorization to Operate (ATO) | Maj Camdon Cady, Chief Operating Officer, Platform One, US Airforce & Tom Runyon, Defense Unicorns | presentation | L2 | | ||
| | | 2. OSCAL Catalog Authoring Tool (CAT) | Dmitry Cousin, NIST |demo | L1 | | ||
| 2022/06/15 | 11:00AM-12:00PM EDT | 1. Trestle - compliance as codeorchestrator and automation workflow | Dr. Anca Sailer, IBM | presentation | L3 | | ||
| | | 2. | | | | | ||
| 2022/07/13 | 11:00AM-12:00PM EDT | 1. | | | | | ||
| | | 2. | | | | | ||
| 2022/08/10 | 11:00AM-12:00PM EDT | 1. | | | | | ||
| | | 2. | | | | | ||
| 2022/09/07 | 11:00AM-12:00PM EDT | 1. | | | | | ||
| | | 2. | | | | | ||
| 2022/10/05 | 11:00AM-12:00PM EDT | 1. | | | | | ||
| | | 2. | | | | | ||
| 2022/11/02 | 11:00AM-12:00PM EDT | 1. | | | | | ||
| | | 2. | | | | | ||
| 2022/11/30 | 11:00AM-12:00PM EDT | 1. | | | | | ||
| | | 2. | | | | |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters