Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  1. Identify key actors in Blueprint Architecture (Membership Manager, Proxy Operator, etc) 
  2. Identify Policies Required for Compliance with Snctfi
  3. Identify Example Policies from other infrastructures to serve as inspiration
  4. Produce a training module to enable Research Communities to have a basic starter pack for policies
    1. Introduce the concept of frameworks and policies, why are they important 
    2. Introduce Snctfi
    3. Encourage RC actors to make policy decisions (e.g. log retention, minimum assurance etc)
    4. Translate those decisions into policy templates
    5. Q & A
  5. Place templates on the AARC Website and produce an AARC Guideline document that links to each piece

Assumptions

  • RCs/Infrastructures may not have a security focussed person, could just be a PI. Definitely can't assume CSIRT body 
  • Those using this policy pack are following the AARC blueprint

...

ActionStatusWho
Reword "Research Community" to Infrastructure
  •   
Hannah
IR Procedure Template
  •   
Hannah
AUP Template
  •   
Ian
Membership Management Template
  •   
Uros
CoCov2 Privacy Policy Template
  •   
Hannah
Check whether CoCov2 can be our "policy"
  •   
Uros
Send an update to Irina
  •   
Hannah
Consider DPIA
  •   
Uros
Put on AARC Website in a modular format
  •   
...
Ask David about RAF and Assurance Profiles
  •   
Uros