SlideShare uma empresa Scribd logo
1 de 22
Baixar para ler offline
CRISP final conference 6th CoU Meeting, Brussels, 16 March 2017
THEMATIC WORKSHOP STEFI
Ronald Boon/Dick Hortensius
Netherlands Standardisation Institute (NEN)
CRISP final conference 6th CoU Meeting, 16 March 2017
Programme for this session
Introduction to the STEFi evaluation
Nathalie Hirschman, TUB CTS
CCTV standards in support of certification
Frank Rottman, Bosch, IEC CLCTC 79/WG 12
CCTV systems and privacy protection
Erik Krempel, Fraunhofer Institute
CWA on the STEFi evaluation
Dick Hortensius, NEN
Panel discussion
Presenters plus expets of the CRISP consortium
Wrap-up and conclusions
CEN Workshop Agreement
on STEFi evaluation
30 September 2016
Dick Hortensius
Netherlands Standardisation Institute
Agenda for the presentation
Why a CWA?
Development process
Scope and content
Next steps
Why a CEN Workshop Agreement?
Standards:
 are voluntary agreements between parties
 provide practical solutions
 support international trade
 can support public policies and legislation
 are developed and maintained according to
systematic processes involving all relevant
stakeholders
 effective means for disseminating results of
research projects
Standards, legislation and conformity
assessment
Standards as basis for certification
Standards for CRISP
Information provider
Audit
review & decision
Auditor
EVALUATION CERTIFICATION
SurveillanceAttestation
Assessment
STEFi
Configuration
Selection and
Determination
R2R1
a.o. ISO 17065
Functional approach to (product) certification (ISO 17000)
CRISP Certification Scheme
CWA
CEN / CENELEC deliverables
 Produced in Technical Committees with national
delegations:
 European Standards – EN
 Technical Specifications - TS
 Technical Reports - TR
 Produced in Workshops with individual
interested parties:
 CEN/CLC Workshop Agreements - CWAs
The Workshop Concept
 Flexible working platform:
 Light procedures
 Direct and voluntary participation of stakeholders
 Participants decide on the working arrangements
 Open to any company or organization:
 Inside or outside Europe
 Public process
 Rapid elaboration of consensus documents
 Few physical meetings
 Work by electronic means encouraged
CEN-CLC Workshop Agreement(CWA)
 Final deliverable of the Workshop - Voluntary application
 Content : technical specifications, guidance material, best practice,
information, etc.
 They can be the basis for a European or international
standard at a later stage
 CEN IPR policy and exploitation rights are applicable to CWAs (no
free availability)
Development process
Project
Plan
Publication
of CWA
CWA
drafting &
adoption
Kick-off
Meeting
Describing
– Scope
– Objectives
– Schedule
Confirming
– Project Plan
– Rules of the
Workshop
– Chairperson
– Secretariat
Consensus
Process
– Workshop
participants
– Public
consultation
where
required
Validity of 3
years
- Re-
confirmation
possible only
once
Development process
Project
Plan
Publication
of CWA
CWA
drafting &
adoption
Kick-off
Meeting
Describing
– Scope
– Objectives
– Schedule
Confirming
– Project Plan
– Rules of the
Workshop
– Chairperson
– Secretariat
Consensus
Process
– Workshop
participants
– Public
consultation
where
required
Validity of 3
years
- Re-
confirmation
possible only
once
CRISP:
August 2016
CRISP:
17 October
2016
CRISP:
November 2016
- January 2017
2nd WS:
16 January 2017
Consultation:
February 2017
Approval:
March 2017
Publication:
April 2017
CRISP final conference 6th CoU Meeting, 16 March 2017
CEN Workshop Agreement
Characteristics
 Guidelines for STEFi
evaluation
 Planned and installed
security systems (specific
context)
 Example: video surveillance
systems (CCTV)
CRISP final conference 6th CoU Meeting, 16 March 2017
Content of the CWA
 Scope
 Terms and definitions
 The methodology
 Basics of the evaluation/certification approach
 The four dimensions
 Parties involved (roles/responsibilities)
 The STEFi evaluation process
 Certification
 Annex A – STEFi assessment questions and related
requirementss for CCTV
 Annex B – Overview of relevant standards
Focus of the CWA
Information provider
Audit
review & decision
Auditor
EVALUATION CERTIFICATION
SurveillanceAttestation
Assessment
STEFi
Configuration
Selection and
Determination
R2R1
Aim: describe the STEFi evaluation in such a way that reproducible
results are achieved by different evaluation bodies
CRISP final conference 6th CoU Meeting, 16 March 2017
Parties involved in the process
CRISP final conference 6th CoU Meeting, 16 March 2017
Annex A – Assessment questions and
requirements for CCTV
For all 4 STEFi dimensions:
Security: 15
Trust: 16
Efficiency: 15
Freedom Infringement: 33
CRISP final conference 6th CoU Meeting, 16 March 2017
Example Annex A - Security
Ref.
CRITERION, Attribute Assessment question Assessment requirement
Relation with standards or
regulation
SECURITY DIMENSION
S.1 Are there measures in place for assessing possible threats (prior as well as after the installation of the system) and in further consequence
to adequately address situations involving possible threats?
S.1.1 RISK, Threats 1. Has a risk assessment been
performed prior to the design and
installation of the video surveillance
system, assessing the probability and
the impact of threats and hazards on
the operational site? [yes/no]
2. Which issues have been addressed in
the risk assessment and have the
results of the assessment been
included in the design and installation
of the system? [qualitative]
Prior to video surveillance system design, a
risk assessment shall be performed, which
will identify threats and hazards to the
premises and assess their likelihood.
The required security functions for the
mitigation of the threats shall be identified
and the video surveillance system will be
designed in a way to mitigate the assessed
risks at the specified location and in regard to
the identified threats.
EN-IEC 62676-4 2015
(Clause 4.2ff.)
(ISO 31000:2009 describes
the principles for the
carrying out of a risk
assessment.)
CRISP final conference 6th CoU Meeting, 16 March 2017
Example Annex A – Freedom infringement
Fi.3.1
2
PERSONAL DATA,
Storage limitation
1. Is the retention limit of video footage
and/or the personal data potentially
extracted form it clearly defined? Does
the retention time reflect the minimum
time that is necessary for the purposes
for which the personal data are
processed? [yes/no]
2. How are retention limits enforced in
practice? [qualitative]
Personal data processed by the video
surveillance system shall be kept in a form
which permits identification of data subjects
for no longer than is necessary for the
purposes for which the personal data are
processed.
Art 5.1e GDPR
Provisions in national
legislation (if existing).
Fi.3.1
3
PERSONAL DATA,
Processing which does
not require identification
1. If the purposes for which the operator
processes personal data do not or do
no longer require the identification of a
data subject by the controller, does the
controller maintain, acquire or process
additional information in order to
identify the data subject? [yes/no]
2. What are the internal policy provisions
to assure non identification?
[qualitative]
Processing personal data by video
surveillance system which does not require
identification shall be in line with conditions
from GDPR Article 11.
Art. 11 GDPR
CRISP final conference 6th CoU Meeting, 16 March 2017
Next steps to a certification scheme
“CRISP organization” supported by relevant stakeholders
CRISP final conference 6th CoU Meeting, 16 March 2017
Panel discussion
Nathalie Hirschmann, TUB CST
Frank Rottmann, Bosch, IEC/CLC TC 79
Erik Krempel, Fraunhofer Institute
Dick Hortensius, NEN
Jelena Burnik, IPRS
Simone Wurster, TUB
Jorje Viguri, UJI
Roger von Laufenberg, VICESSE
Moderator: Ronald Boon, NEN

Mais conteúdo relacionado

Mais procurados

CRISP Work package 4 Key Outcomes
CRISP Work package 4 Key OutcomesCRISP Work package 4 Key Outcomes
CRISP Work package 4 Key OutcomesCRISP Project
 
Wrapping Up and Next Steps¶
Wrapping Up and Next Steps¶Wrapping Up and Next Steps¶
Wrapping Up and Next Steps¶Archiver
 
Legal and ethical issues (the LLM project)
Legal and ethical issues (the LLM project)Legal and ethical issues (the LLM project)
Legal and ethical issues (the LLM project)long lasting memories
 
Vlg Loss Prevention & Secruity Engels
Vlg Loss Prevention & Secruity EngelsVlg Loss Prevention & Secruity Engels
Vlg Loss Prevention & Secruity Engelspascalverbaten
 
1 archiver omc project_overview
1 archiver omc project_overview1 archiver omc project_overview
1 archiver omc project_overviewArchiver
 
RPAS related privacy and data protection: practical advice for RPAS users
RPAS related privacy and data protection: practical advice for RPAS usersRPAS related privacy and data protection: practical advice for RPAS users
RPAS related privacy and data protection: practical advice for RPAS usersTrilateral Research
 
DHPOL INSPEC2T presentation at CEPOL
DHPOL INSPEC2T presentation at CEPOLDHPOL INSPEC2T presentation at CEPOL
DHPOL INSPEC2T presentation at CEPOLINSPEC2T Project
 

Mais procurados (10)

CRISP Work package 4 Key Outcomes
CRISP Work package 4 Key OutcomesCRISP Work package 4 Key Outcomes
CRISP Work package 4 Key Outcomes
 
Wrapping Up and Next Steps¶
Wrapping Up and Next Steps¶Wrapping Up and Next Steps¶
Wrapping Up and Next Steps¶
 
An explanation on how the CDE competition works.
An explanation on how the CDE competition works.An explanation on how the CDE competition works.
An explanation on how the CDE competition works.
 
Legal and ethical issues (the LLM project)
Legal and ethical issues (the LLM project)Legal and ethical issues (the LLM project)
Legal and ethical issues (the LLM project)
 
Press release 3rd pilot
Press release 3rd pilotPress release 3rd pilot
Press release 3rd pilot
 
Vlg Loss Prevention & Secruity Engels
Vlg Loss Prevention & Secruity EngelsVlg Loss Prevention & Secruity Engels
Vlg Loss Prevention & Secruity Engels
 
EGI Operational Security
EGI Operational SecurityEGI Operational Security
EGI Operational Security
 
1 archiver omc project_overview
1 archiver omc project_overview1 archiver omc project_overview
1 archiver omc project_overview
 
RPAS related privacy and data protection: practical advice for RPAS users
RPAS related privacy and data protection: practical advice for RPAS usersRPAS related privacy and data protection: practical advice for RPAS users
RPAS related privacy and data protection: practical advice for RPAS users
 
DHPOL INSPEC2T presentation at CEPOL
DHPOL INSPEC2T presentation at CEPOLDHPOL INSPEC2T presentation at CEPOL
DHPOL INSPEC2T presentation at CEPOL
 

Destaque

2. crisp final conf ste fi workshop_reflections iec-tc79 wg12
2. crisp final conf ste fi workshop_reflections iec-tc79 wg122. crisp final conf ste fi workshop_reflections iec-tc79 wg12
2. crisp final conf ste fi workshop_reflections iec-tc79 wg12CRISP Project
 
Can Trust In Security TEchnologies be Enhanced through Certification?
Can Trust In Security TEchnologies be Enhanced through Certification?Can Trust In Security TEchnologies be Enhanced through Certification?
Can Trust In Security TEchnologies be Enhanced through Certification?CRISP Project
 
Smart Video Surveillance and Privacy - CRISP Final Conference
Smart Video Surveillance and Privacy - CRISP Final ConferenceSmart Video Surveillance and Privacy - CRISP Final Conference
Smart Video Surveillance and Privacy - CRISP Final ConferenceCRISP Project
 
Crisp kaleidoscope presentation 13112015
Crisp kaleidoscope presentation 13112015Crisp kaleidoscope presentation 13112015
Crisp kaleidoscope presentation 13112015CRISP Project
 
CRISP Stakeholder Analysis
CRISP Stakeholder AnalysisCRISP Stakeholder Analysis
CRISP Stakeholder AnalysisCRISP Project
 
Relación entre la informática y la tecnología.
Relación entre la informática y la tecnología.  Relación entre la informática y la tecnología.
Relación entre la informática y la tecnología. Angie Dayanna Oidor Diaz
 
3Com 3C10385VCX
3Com 3C10385VCX3Com 3C10385VCX
3Com 3C10385VCXsavomir
 
3Com ESPL-341
3Com ESPL-3413Com ESPL-341
3Com ESPL-341savomir
 
3Com 3C17506A
3Com 3C17506A3Com 3C17506A
3Com 3C17506Asavomir
 
3Com USR1868
3Com USR18683Com USR1868
3Com USR1868savomir
 

Destaque (16)

2. crisp final conf ste fi workshop_reflections iec-tc79 wg12
2. crisp final conf ste fi workshop_reflections iec-tc79 wg122. crisp final conf ste fi workshop_reflections iec-tc79 wg12
2. crisp final conf ste fi workshop_reflections iec-tc79 wg12
 
Can Trust In Security TEchnologies be Enhanced through Certification?
Can Trust In Security TEchnologies be Enhanced through Certification?Can Trust In Security TEchnologies be Enhanced through Certification?
Can Trust In Security TEchnologies be Enhanced through Certification?
 
Smart Video Surveillance and Privacy - CRISP Final Conference
Smart Video Surveillance and Privacy - CRISP Final ConferenceSmart Video Surveillance and Privacy - CRISP Final Conference
Smart Video Surveillance and Privacy - CRISP Final Conference
 
Crisp kaleidoscope presentation 13112015
Crisp kaleidoscope presentation 13112015Crisp kaleidoscope presentation 13112015
Crisp kaleidoscope presentation 13112015
 
CRISP Stakeholder Analysis
CRISP Stakeholder AnalysisCRISP Stakeholder Analysis
CRISP Stakeholder Analysis
 
Desviacion social
Desviacion socialDesviacion social
Desviacion social
 
Drama invesiga
Drama invesigaDrama invesiga
Drama invesiga
 
Relación entre la informática y la tecnología.
Relación entre la informática y la tecnología.  Relación entre la informática y la tecnología.
Relación entre la informática y la tecnología.
 
Andrew Feller Photography
Andrew Feller PhotographyAndrew Feller Photography
Andrew Feller Photography
 
Drdevi
DrdeviDrdevi
Drdevi
 
3Com 3C10385VCX
3Com 3C10385VCX3Com 3C10385VCX
3Com 3C10385VCX
 
Topología de red
Topología de redTopología de red
Topología de red
 
3Com ESPL-341
3Com ESPL-3413Com ESPL-341
3Com ESPL-341
 
3Com 3C17506A
3Com 3C17506A3Com 3C17506A
3Com 3C17506A
 
3Com USR1868
3Com USR18683Com USR1868
3Com USR1868
 
Presentacionde ingles
Presentacionde inglesPresentacionde ingles
Presentacionde ingles
 

Semelhante a Introduction to the CWA process - CRISP Final Conference

CRISP project: overview of findings and lessons learned.
CRISP project: overview of findings and lessons learned.CRISP project: overview of findings and lessons learned.
CRISP project: overview of findings and lessons learned.Trilateral Research
 
BSI - Standards for statistical methods, tools and techniques
BSI - Standards for statistical methods, tools and techniquesBSI - Standards for statistical methods, tools and techniques
BSI - Standards for statistical methods, tools and techniquesBSI British Standards Institution
 
04_a_CEPEJ(2021)5 EN - CEPEJ roadmap certification AI (1).docx
04_a_CEPEJ(2021)5 EN - CEPEJ roadmap certification AI (1).docx04_a_CEPEJ(2021)5 EN - CEPEJ roadmap certification AI (1).docx
04_a_CEPEJ(2021)5 EN - CEPEJ roadmap certification AI (1).docxPetruVrlan
 
EuroPriSe and ISDP 10003 2015
EuroPriSe and ISDP 10003 2015EuroPriSe and ISDP 10003 2015
EuroPriSe and ISDP 10003 2015Marco Moreschini
 
EuroPriSe and ISDP10003 2015 -
EuroPriSe and ISDP10003  2015 - EuroPriSe and ISDP10003  2015 -
EuroPriSe and ISDP10003 2015 - Marco Moreschini
 
MEDINA ESG (Expert Stakeholder Group) presentation
MEDINA ESG (Expert Stakeholder Group) presentationMEDINA ESG (Expert Stakeholder Group) presentation
MEDINA ESG (Expert Stakeholder Group) presentationMEDINA
 
Smarter Manufacturing Sustainable Futures 4 FLEXINET project IT Perspective
Smarter Manufacturing Sustainable Futures 4 FLEXINET project IT PerspectiveSmarter Manufacturing Sustainable Futures 4 FLEXINET project IT Perspective
Smarter Manufacturing Sustainable Futures 4 FLEXINET project IT PerspectiveFLEXINET-PROJECT
 
THE RIDDLE OF THE STANDARDS – WHEN WILL THE ISA EXPLOITATION RULES BE COMPLETE?
THE RIDDLE OF THE STANDARDS – WHEN WILL THE ISA EXPLOITATION RULES BE COMPLETE?THE RIDDLE OF THE STANDARDS – WHEN WILL THE ISA EXPLOITATION RULES BE COMPLETE?
THE RIDDLE OF THE STANDARDS – WHEN WILL THE ISA EXPLOITATION RULES BE COMPLETE?iQHub
 
2017 iii 2_robert_tomas_inspire_miwp
2017 iii 2_robert_tomas_inspire_miwp2017 iii 2_robert_tomas_inspire_miwp
2017 iii 2_robert_tomas_inspire_miwpATTRACTIVE DANUBE
 
Using cloud services: Compliance with the Security Requirements of the Spanis...
Using cloud services: Compliance with the Security Requirements of the Spanis...Using cloud services: Compliance with the Security Requirements of the Spanis...
Using cloud services: Compliance with the Security Requirements of the Spanis...Miguel A. Amutio
 
Basis of Measurement - A recommended practice
Basis of Measurement - A recommended practiceBasis of Measurement - A recommended practice
Basis of Measurement - A recommended practiceNesma
 
Үндэсний газрын мэдээллийн системийн хөгжүүлэлт тайван улсын жишээ
Үндэсний газрын мэдээллийн системийн хөгжүүлэлт тайван улсын жишээҮндэсний газрын мэдээллийн системийн хөгжүүлэлт тайван улсын жишээ
Үндэсний газрын мэдээллийн системийн хөгжүүлэлт тайван улсын жишээСумъяа Алтангэрэл
 
Protocole NAGOYA - Le Point du LIEGE science park - 27 octobre 2017
Protocole NAGOYA - Le Point du LIEGE science park - 27 octobre 2017Protocole NAGOYA - Le Point du LIEGE science park - 27 octobre 2017
Protocole NAGOYA - Le Point du LIEGE science park - 27 octobre 2017Interface ULg, LIEGE science park
 
Archiver 2nd_OMC event_Barcelona_Project Overview
Archiver 2nd_OMC event_Barcelona_Project OverviewArchiver 2nd_OMC event_Barcelona_Project Overview
Archiver 2nd_OMC event_Barcelona_Project OverviewArchiver
 

Semelhante a Introduction to the CWA process - CRISP Final Conference (20)

Leo Giannotti - EPO
Leo Giannotti - EPOLeo Giannotti - EPO
Leo Giannotti - EPO
 
Leo Giannotti - EPO
Leo Giannotti - EPOLeo Giannotti - EPO
Leo Giannotti - EPO
 
CRISP project: overview of findings and lessons learned.
CRISP project: overview of findings and lessons learned.CRISP project: overview of findings and lessons learned.
CRISP project: overview of findings and lessons learned.
 
BSI - Standards for statistical methods, tools and techniques
BSI - Standards for statistical methods, tools and techniquesBSI - Standards for statistical methods, tools and techniques
BSI - Standards for statistical methods, tools and techniques
 
04_a_CEPEJ(2021)5 EN - CEPEJ roadmap certification AI (1).docx
04_a_CEPEJ(2021)5 EN - CEPEJ roadmap certification AI (1).docx04_a_CEPEJ(2021)5 EN - CEPEJ roadmap certification AI (1).docx
04_a_CEPEJ(2021)5 EN - CEPEJ roadmap certification AI (1).docx
 
EuroPriSe and ISDP 10003 2015
EuroPriSe and ISDP 10003 2015EuroPriSe and ISDP 10003 2015
EuroPriSe and ISDP 10003 2015
 
EuroPriSe and ISDP10003 2015 -
EuroPriSe and ISDP10003  2015 - EuroPriSe and ISDP10003  2015 -
EuroPriSe and ISDP10003 2015 -
 
MEDINA ESG (Expert Stakeholder Group) presentation
MEDINA ESG (Expert Stakeholder Group) presentationMEDINA ESG (Expert Stakeholder Group) presentation
MEDINA ESG (Expert Stakeholder Group) presentation
 
Helix Nebula - The Science Cloud - Lessons learned
Helix Nebula - The Science Cloud - Lessons learned Helix Nebula - The Science Cloud - Lessons learned
Helix Nebula - The Science Cloud - Lessons learned
 
Smarter Manufacturing Sustainable Futures 4 FLEXINET project IT Perspective
Smarter Manufacturing Sustainable Futures 4 FLEXINET project IT PerspectiveSmarter Manufacturing Sustainable Futures 4 FLEXINET project IT Perspective
Smarter Manufacturing Sustainable Futures 4 FLEXINET project IT Perspective
 
THE RIDDLE OF THE STANDARDS – WHEN WILL THE ISA EXPLOITATION RULES BE COMPLETE?
THE RIDDLE OF THE STANDARDS – WHEN WILL THE ISA EXPLOITATION RULES BE COMPLETE?THE RIDDLE OF THE STANDARDS – WHEN WILL THE ISA EXPLOITATION RULES BE COMPLETE?
THE RIDDLE OF THE STANDARDS – WHEN WILL THE ISA EXPLOITATION RULES BE COMPLETE?
 
CRISP WP3 stakeholder workshop
CRISP WP3 stakeholder workshopCRISP WP3 stakeholder workshop
CRISP WP3 stakeholder workshop
 
2017 iii 2_robert_tomas_inspire_miwp
2017 iii 2_robert_tomas_inspire_miwp2017 iii 2_robert_tomas_inspire_miwp
2017 iii 2_robert_tomas_inspire_miwp
 
Using cloud services: Compliance with the Security Requirements of the Spanis...
Using cloud services: Compliance with the Security Requirements of the Spanis...Using cloud services: Compliance with the Security Requirements of the Spanis...
Using cloud services: Compliance with the Security Requirements of the Spanis...
 
2009 10 03 Learning Unit Sdi
2009 10 03 Learning Unit Sdi2009 10 03 Learning Unit Sdi
2009 10 03 Learning Unit Sdi
 
The HNSciCloud Pre-Commercial Procurement Project
The HNSciCloud Pre-Commercial Procurement ProjectThe HNSciCloud Pre-Commercial Procurement Project
The HNSciCloud Pre-Commercial Procurement Project
 
Basis of Measurement - A recommended practice
Basis of Measurement - A recommended practiceBasis of Measurement - A recommended practice
Basis of Measurement - A recommended practice
 
Үндэсний газрын мэдээллийн системийн хөгжүүлэлт тайван улсын жишээ
Үндэсний газрын мэдээллийн системийн хөгжүүлэлт тайван улсын жишээҮндэсний газрын мэдээллийн системийн хөгжүүлэлт тайван улсын жишээ
Үндэсний газрын мэдээллийн системийн хөгжүүлэлт тайван улсын жишээ
 
Protocole NAGOYA - Le Point du LIEGE science park - 27 octobre 2017
Protocole NAGOYA - Le Point du LIEGE science park - 27 octobre 2017Protocole NAGOYA - Le Point du LIEGE science park - 27 octobre 2017
Protocole NAGOYA - Le Point du LIEGE science park - 27 octobre 2017
 
Archiver 2nd_OMC event_Barcelona_Project Overview
Archiver 2nd_OMC event_Barcelona_Project OverviewArchiver 2nd_OMC event_Barcelona_Project Overview
Archiver 2nd_OMC event_Barcelona_Project Overview
 

Último

Chromatin Structure | EUCHROMATIN | HETEROCHROMATIN
Chromatin Structure | EUCHROMATIN | HETEROCHROMATINChromatin Structure | EUCHROMATIN | HETEROCHROMATIN
Chromatin Structure | EUCHROMATIN | HETEROCHROMATINsankalpkumarsahoo174
 
Lucknow 💋 Russian Call Girls Lucknow Finest Escorts Service 8923113531 Availa...
Lucknow 💋 Russian Call Girls Lucknow Finest Escorts Service 8923113531 Availa...Lucknow 💋 Russian Call Girls Lucknow Finest Escorts Service 8923113531 Availa...
Lucknow 💋 Russian Call Girls Lucknow Finest Escorts Service 8923113531 Availa...anilsa9823
 
All-domain Anomaly Resolution Office U.S. Department of Defense (U) Case: “Eg...
All-domain Anomaly Resolution Office U.S. Department of Defense (U) Case: “Eg...All-domain Anomaly Resolution Office U.S. Department of Defense (U) Case: “Eg...
All-domain Anomaly Resolution Office U.S. Department of Defense (U) Case: “Eg...Sérgio Sacani
 
GFP in rDNA Technology (Biotechnology).pptx
GFP in rDNA Technology (Biotechnology).pptxGFP in rDNA Technology (Biotechnology).pptx
GFP in rDNA Technology (Biotechnology).pptxAleenaTreesaSaji
 
9654467111 Call Girls In Raj Nagar Delhi Short 1500 Night 6000
9654467111 Call Girls In Raj Nagar Delhi Short 1500 Night 60009654467111 Call Girls In Raj Nagar Delhi Short 1500 Night 6000
9654467111 Call Girls In Raj Nagar Delhi Short 1500 Night 6000Sapana Sha
 
Cultivation of KODO MILLET . made by Ghanshyam pptx
Cultivation of KODO MILLET . made by Ghanshyam pptxCultivation of KODO MILLET . made by Ghanshyam pptx
Cultivation of KODO MILLET . made by Ghanshyam pptxpradhanghanshyam7136
 
Hire 💕 9907093804 Hooghly Call Girls Service Call Girls Agency
Hire 💕 9907093804 Hooghly Call Girls Service Call Girls AgencyHire 💕 9907093804 Hooghly Call Girls Service Call Girls Agency
Hire 💕 9907093804 Hooghly Call Girls Service Call Girls AgencySheetal Arora
 
Recombinant DNA technology (Immunological screening)
Recombinant DNA technology (Immunological screening)Recombinant DNA technology (Immunological screening)
Recombinant DNA technology (Immunological screening)PraveenaKalaiselvan1
 
Spermiogenesis or Spermateleosis or metamorphosis of spermatid
Spermiogenesis or Spermateleosis or metamorphosis of spermatidSpermiogenesis or Spermateleosis or metamorphosis of spermatid
Spermiogenesis or Spermateleosis or metamorphosis of spermatidSarthak Sekhar Mondal
 
GBSN - Microbiology (Unit 1)
GBSN - Microbiology (Unit 1)GBSN - Microbiology (Unit 1)
GBSN - Microbiology (Unit 1)Areesha Ahmad
 
GBSN - Biochemistry (Unit 1)
GBSN - Biochemistry (Unit 1)GBSN - Biochemistry (Unit 1)
GBSN - Biochemistry (Unit 1)Areesha Ahmad
 
Botany krishna series 2nd semester Only Mcq type questions
Botany krishna series 2nd semester Only Mcq type questionsBotany krishna series 2nd semester Only Mcq type questions
Botany krishna series 2nd semester Only Mcq type questionsSumit Kumar yadav
 
PossibleEoarcheanRecordsoftheGeomagneticFieldPreservedintheIsuaSupracrustalBe...
PossibleEoarcheanRecordsoftheGeomagneticFieldPreservedintheIsuaSupracrustalBe...PossibleEoarcheanRecordsoftheGeomagneticFieldPreservedintheIsuaSupracrustalBe...
PossibleEoarcheanRecordsoftheGeomagneticFieldPreservedintheIsuaSupracrustalBe...Sérgio Sacani
 
DIFFERENCE IN BACK CROSS AND TEST CROSS
DIFFERENCE IN  BACK CROSS AND TEST CROSSDIFFERENCE IN  BACK CROSS AND TEST CROSS
DIFFERENCE IN BACK CROSS AND TEST CROSSLeenakshiTyagi
 
Zoology 4th semester series (krishna).pdf
Zoology 4th semester series (krishna).pdfZoology 4th semester series (krishna).pdf
Zoology 4th semester series (krishna).pdfSumit Kumar yadav
 
TEST BANK For Radiologic Science for Technologists, 12th Edition by Stewart C...
TEST BANK For Radiologic Science for Technologists, 12th Edition by Stewart C...TEST BANK For Radiologic Science for Technologists, 12th Edition by Stewart C...
TEST BANK For Radiologic Science for Technologists, 12th Edition by Stewart C...ssifa0344
 
Labelling Requirements and Label Claims for Dietary Supplements and Recommend...
Labelling Requirements and Label Claims for Dietary Supplements and Recommend...Labelling Requirements and Label Claims for Dietary Supplements and Recommend...
Labelling Requirements and Label Claims for Dietary Supplements and Recommend...Lokesh Kothari
 
Nanoparticles synthesis and characterization​ ​
Nanoparticles synthesis and characterization​  ​Nanoparticles synthesis and characterization​  ​
Nanoparticles synthesis and characterization​ ​kaibalyasahoo82800
 
Nightside clouds and disequilibrium chemistry on the hot Jupiter WASP-43b
Nightside clouds and disequilibrium chemistry on the hot Jupiter WASP-43bNightside clouds and disequilibrium chemistry on the hot Jupiter WASP-43b
Nightside clouds and disequilibrium chemistry on the hot Jupiter WASP-43bSérgio Sacani
 

Último (20)

Chromatin Structure | EUCHROMATIN | HETEROCHROMATIN
Chromatin Structure | EUCHROMATIN | HETEROCHROMATINChromatin Structure | EUCHROMATIN | HETEROCHROMATIN
Chromatin Structure | EUCHROMATIN | HETEROCHROMATIN
 
Lucknow 💋 Russian Call Girls Lucknow Finest Escorts Service 8923113531 Availa...
Lucknow 💋 Russian Call Girls Lucknow Finest Escorts Service 8923113531 Availa...Lucknow 💋 Russian Call Girls Lucknow Finest Escorts Service 8923113531 Availa...
Lucknow 💋 Russian Call Girls Lucknow Finest Escorts Service 8923113531 Availa...
 
All-domain Anomaly Resolution Office U.S. Department of Defense (U) Case: “Eg...
All-domain Anomaly Resolution Office U.S. Department of Defense (U) Case: “Eg...All-domain Anomaly Resolution Office U.S. Department of Defense (U) Case: “Eg...
All-domain Anomaly Resolution Office U.S. Department of Defense (U) Case: “Eg...
 
GFP in rDNA Technology (Biotechnology).pptx
GFP in rDNA Technology (Biotechnology).pptxGFP in rDNA Technology (Biotechnology).pptx
GFP in rDNA Technology (Biotechnology).pptx
 
9654467111 Call Girls In Raj Nagar Delhi Short 1500 Night 6000
9654467111 Call Girls In Raj Nagar Delhi Short 1500 Night 60009654467111 Call Girls In Raj Nagar Delhi Short 1500 Night 6000
9654467111 Call Girls In Raj Nagar Delhi Short 1500 Night 6000
 
Cultivation of KODO MILLET . made by Ghanshyam pptx
Cultivation of KODO MILLET . made by Ghanshyam pptxCultivation of KODO MILLET . made by Ghanshyam pptx
Cultivation of KODO MILLET . made by Ghanshyam pptx
 
Hire 💕 9907093804 Hooghly Call Girls Service Call Girls Agency
Hire 💕 9907093804 Hooghly Call Girls Service Call Girls AgencyHire 💕 9907093804 Hooghly Call Girls Service Call Girls Agency
Hire 💕 9907093804 Hooghly Call Girls Service Call Girls Agency
 
Recombinant DNA technology (Immunological screening)
Recombinant DNA technology (Immunological screening)Recombinant DNA technology (Immunological screening)
Recombinant DNA technology (Immunological screening)
 
Spermiogenesis or Spermateleosis or metamorphosis of spermatid
Spermiogenesis or Spermateleosis or metamorphosis of spermatidSpermiogenesis or Spermateleosis or metamorphosis of spermatid
Spermiogenesis or Spermateleosis or metamorphosis of spermatid
 
GBSN - Microbiology (Unit 1)
GBSN - Microbiology (Unit 1)GBSN - Microbiology (Unit 1)
GBSN - Microbiology (Unit 1)
 
GBSN - Biochemistry (Unit 1)
GBSN - Biochemistry (Unit 1)GBSN - Biochemistry (Unit 1)
GBSN - Biochemistry (Unit 1)
 
Botany krishna series 2nd semester Only Mcq type questions
Botany krishna series 2nd semester Only Mcq type questionsBotany krishna series 2nd semester Only Mcq type questions
Botany krishna series 2nd semester Only Mcq type questions
 
PossibleEoarcheanRecordsoftheGeomagneticFieldPreservedintheIsuaSupracrustalBe...
PossibleEoarcheanRecordsoftheGeomagneticFieldPreservedintheIsuaSupracrustalBe...PossibleEoarcheanRecordsoftheGeomagneticFieldPreservedintheIsuaSupracrustalBe...
PossibleEoarcheanRecordsoftheGeomagneticFieldPreservedintheIsuaSupracrustalBe...
 
DIFFERENCE IN BACK CROSS AND TEST CROSS
DIFFERENCE IN  BACK CROSS AND TEST CROSSDIFFERENCE IN  BACK CROSS AND TEST CROSS
DIFFERENCE IN BACK CROSS AND TEST CROSS
 
Zoology 4th semester series (krishna).pdf
Zoology 4th semester series (krishna).pdfZoology 4th semester series (krishna).pdf
Zoology 4th semester series (krishna).pdf
 
Engler and Prantl system of classification in plant taxonomy
Engler and Prantl system of classification in plant taxonomyEngler and Prantl system of classification in plant taxonomy
Engler and Prantl system of classification in plant taxonomy
 
TEST BANK For Radiologic Science for Technologists, 12th Edition by Stewart C...
TEST BANK For Radiologic Science for Technologists, 12th Edition by Stewart C...TEST BANK For Radiologic Science for Technologists, 12th Edition by Stewart C...
TEST BANK For Radiologic Science for Technologists, 12th Edition by Stewart C...
 
Labelling Requirements and Label Claims for Dietary Supplements and Recommend...
Labelling Requirements and Label Claims for Dietary Supplements and Recommend...Labelling Requirements and Label Claims for Dietary Supplements and Recommend...
Labelling Requirements and Label Claims for Dietary Supplements and Recommend...
 
Nanoparticles synthesis and characterization​ ​
Nanoparticles synthesis and characterization​  ​Nanoparticles synthesis and characterization​  ​
Nanoparticles synthesis and characterization​ ​
 
Nightside clouds and disequilibrium chemistry on the hot Jupiter WASP-43b
Nightside clouds and disequilibrium chemistry on the hot Jupiter WASP-43bNightside clouds and disequilibrium chemistry on the hot Jupiter WASP-43b
Nightside clouds and disequilibrium chemistry on the hot Jupiter WASP-43b
 

Introduction to the CWA process - CRISP Final Conference

  • 1. CRISP final conference 6th CoU Meeting, Brussels, 16 March 2017 THEMATIC WORKSHOP STEFI Ronald Boon/Dick Hortensius Netherlands Standardisation Institute (NEN)
  • 2. CRISP final conference 6th CoU Meeting, 16 March 2017 Programme for this session Introduction to the STEFi evaluation Nathalie Hirschman, TUB CTS CCTV standards in support of certification Frank Rottman, Bosch, IEC CLCTC 79/WG 12 CCTV systems and privacy protection Erik Krempel, Fraunhofer Institute CWA on the STEFi evaluation Dick Hortensius, NEN Panel discussion Presenters plus expets of the CRISP consortium Wrap-up and conclusions
  • 3. CEN Workshop Agreement on STEFi evaluation 30 September 2016 Dick Hortensius Netherlands Standardisation Institute
  • 4. Agenda for the presentation Why a CWA? Development process Scope and content Next steps
  • 5. Why a CEN Workshop Agreement? Standards:  are voluntary agreements between parties  provide practical solutions  support international trade  can support public policies and legislation  are developed and maintained according to systematic processes involving all relevant stakeholders  effective means for disseminating results of research projects
  • 6. Standards, legislation and conformity assessment
  • 7. Standards as basis for certification
  • 8. Standards for CRISP Information provider Audit review & decision Auditor EVALUATION CERTIFICATION SurveillanceAttestation Assessment STEFi Configuration Selection and Determination R2R1 a.o. ISO 17065 Functional approach to (product) certification (ISO 17000) CRISP Certification Scheme CWA
  • 9. CEN / CENELEC deliverables  Produced in Technical Committees with national delegations:  European Standards – EN  Technical Specifications - TS  Technical Reports - TR  Produced in Workshops with individual interested parties:  CEN/CLC Workshop Agreements - CWAs
  • 10. The Workshop Concept  Flexible working platform:  Light procedures  Direct and voluntary participation of stakeholders  Participants decide on the working arrangements  Open to any company or organization:  Inside or outside Europe  Public process  Rapid elaboration of consensus documents  Few physical meetings  Work by electronic means encouraged
  • 11. CEN-CLC Workshop Agreement(CWA)  Final deliverable of the Workshop - Voluntary application  Content : technical specifications, guidance material, best practice, information, etc.  They can be the basis for a European or international standard at a later stage  CEN IPR policy and exploitation rights are applicable to CWAs (no free availability)
  • 12. Development process Project Plan Publication of CWA CWA drafting & adoption Kick-off Meeting Describing – Scope – Objectives – Schedule Confirming – Project Plan – Rules of the Workshop – Chairperson – Secretariat Consensus Process – Workshop participants – Public consultation where required Validity of 3 years - Re- confirmation possible only once
  • 13. Development process Project Plan Publication of CWA CWA drafting & adoption Kick-off Meeting Describing – Scope – Objectives – Schedule Confirming – Project Plan – Rules of the Workshop – Chairperson – Secretariat Consensus Process – Workshop participants – Public consultation where required Validity of 3 years - Re- confirmation possible only once CRISP: August 2016 CRISP: 17 October 2016 CRISP: November 2016 - January 2017 2nd WS: 16 January 2017 Consultation: February 2017 Approval: March 2017 Publication: April 2017
  • 14. CRISP final conference 6th CoU Meeting, 16 March 2017 CEN Workshop Agreement Characteristics  Guidelines for STEFi evaluation  Planned and installed security systems (specific context)  Example: video surveillance systems (CCTV)
  • 15. CRISP final conference 6th CoU Meeting, 16 March 2017 Content of the CWA  Scope  Terms and definitions  The methodology  Basics of the evaluation/certification approach  The four dimensions  Parties involved (roles/responsibilities)  The STEFi evaluation process  Certification  Annex A – STEFi assessment questions and related requirementss for CCTV  Annex B – Overview of relevant standards
  • 16. Focus of the CWA Information provider Audit review & decision Auditor EVALUATION CERTIFICATION SurveillanceAttestation Assessment STEFi Configuration Selection and Determination R2R1 Aim: describe the STEFi evaluation in such a way that reproducible results are achieved by different evaluation bodies
  • 17. CRISP final conference 6th CoU Meeting, 16 March 2017 Parties involved in the process
  • 18. CRISP final conference 6th CoU Meeting, 16 March 2017 Annex A – Assessment questions and requirements for CCTV For all 4 STEFi dimensions: Security: 15 Trust: 16 Efficiency: 15 Freedom Infringement: 33
  • 19. CRISP final conference 6th CoU Meeting, 16 March 2017 Example Annex A - Security Ref. CRITERION, Attribute Assessment question Assessment requirement Relation with standards or regulation SECURITY DIMENSION S.1 Are there measures in place for assessing possible threats (prior as well as after the installation of the system) and in further consequence to adequately address situations involving possible threats? S.1.1 RISK, Threats 1. Has a risk assessment been performed prior to the design and installation of the video surveillance system, assessing the probability and the impact of threats and hazards on the operational site? [yes/no] 2. Which issues have been addressed in the risk assessment and have the results of the assessment been included in the design and installation of the system? [qualitative] Prior to video surveillance system design, a risk assessment shall be performed, which will identify threats and hazards to the premises and assess their likelihood. The required security functions for the mitigation of the threats shall be identified and the video surveillance system will be designed in a way to mitigate the assessed risks at the specified location and in regard to the identified threats. EN-IEC 62676-4 2015 (Clause 4.2ff.) (ISO 31000:2009 describes the principles for the carrying out of a risk assessment.)
  • 20. CRISP final conference 6th CoU Meeting, 16 March 2017 Example Annex A – Freedom infringement Fi.3.1 2 PERSONAL DATA, Storage limitation 1. Is the retention limit of video footage and/or the personal data potentially extracted form it clearly defined? Does the retention time reflect the minimum time that is necessary for the purposes for which the personal data are processed? [yes/no] 2. How are retention limits enforced in practice? [qualitative] Personal data processed by the video surveillance system shall be kept in a form which permits identification of data subjects for no longer than is necessary for the purposes for which the personal data are processed. Art 5.1e GDPR Provisions in national legislation (if existing). Fi.3.1 3 PERSONAL DATA, Processing which does not require identification 1. If the purposes for which the operator processes personal data do not or do no longer require the identification of a data subject by the controller, does the controller maintain, acquire or process additional information in order to identify the data subject? [yes/no] 2. What are the internal policy provisions to assure non identification? [qualitative] Processing personal data by video surveillance system which does not require identification shall be in line with conditions from GDPR Article 11. Art. 11 GDPR
  • 21. CRISP final conference 6th CoU Meeting, 16 March 2017 Next steps to a certification scheme “CRISP organization” supported by relevant stakeholders
  • 22. CRISP final conference 6th CoU Meeting, 16 March 2017 Panel discussion Nathalie Hirschmann, TUB CST Frank Rottmann, Bosch, IEC/CLC TC 79 Erik Krempel, Fraunhofer Institute Dick Hortensius, NEN Jelena Burnik, IPRS Simone Wurster, TUB Jorje Viguri, UJI Roger von Laufenberg, VICESSE Moderator: Ronald Boon, NEN