Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

 

Table of Contents

This page describes the GSWG Trust Assurance Task Force (the "GSWG TA TF"). 

...

For a digital world, trust is an essential.  As shown in ToIP Governance Stack, human trust is heavily relied upon in layer three – Credential Exchange and is refined in the Ecosystem Governance Layer (Layer Four) with the introduction of the following roles creating a referential trust ecosystem: Goverrned Actor; Credential Registry, Governance Authority, Auditor and Audit Accreditor. The following diagram depicts how these roles interact

Image RemovedImage Added

Figure A – Referential Trust Assurance Ecosystem

...

Deliverables

The GSWG TA Task Force is an incubator of deliverables on the topic of Risk Assessment, Trust Assurance and Certification on behalf of the Governance Stack Working Group.  These deliverables take the form of whitepapers, recommendations, templates and specifications.

...

  1. ToIP Trust Assurance Primer provides an overview of Trust Assurance concepts and why it is an important aspect of ToIP governance. (Google Document version)
  2. ToIP Risk Assessment Kit is a guide that Governance Authorities can use to develop a a risk assessment enabling a proper control scheme to be implemented 
  3. ToIP List of SSI and Verifiable Credential Risks is an inventory of various risks that affect the Governance Stack for consideration in risk assessments
  4. ToIP Levels of Assurance defines classes of objects (e.g. credentials) and actors participating in creating, maintaining and using those objects at defined levels of assurance
  5. ToIP Ecosystem Control Objectives and Practices identifies a set of control requirements and suggested control practices of roles in an ecosystem to address risks in an ecosystem and varying levels of assurance
  6. ToIP Trust Assurance Framework Implementation Guide is a reference guide to Governance Authorities to assist in creating an appropriate risk-based scheme for an ecosystem
  7. ToIP Risk Assessment (Google Document version), Trust Assurance, and Certification Controlled Document Template is a model are models for governance framework developers to assist in creating this various controlled document documents of the governance metamodelGovernance Metamodel.
  8. ToIP Trust Criteria Matrix Template is a model for governance frameworks that want to enact their own assurance criteria for governed roles operating in the ecosystem. (Google Document version)
  9. ToIP Certification and TrustMarksTrust Marks is a deep dive into enacting a formal certification scheme using Trust Marks

...

The work of the GSWG P&R TF will be complete when a baseline set of deliverables are submitted to the GSWG and the ToIP Steering Group.  It is likely that the Task Force will morph into its own working group at some point of its maturity

Meeting Schedule and Notes

Bi-Weekly Friday 7-8am PT  - See ToIP Calendar for Meeting Link

Please find notes, presentations and recordings on the Meeting Notes page

Mailing List and Communications

...