Skip to content

Commit

Permalink
updating issue1237 and addressing conflicts (usnistgov#1289)
Browse files Browse the repository at this point in the history
  • Loading branch information
iMichaela committed Jun 1, 2022
1 parent 6d3027f commit 6007f87
Show file tree
Hide file tree
Showing 2 changed files with 32 additions and 24 deletions.
55 changes: 31 additions & 24 deletions docs/content/learn/presentations/OSCAL-mini-workshop-series.md
Original file line number Diff line number Diff line change
@@ -1,12 +1,19 @@
---
title: OSCAL Mini Workshops Series
heading: 3rd Open Security Controls Assessment Language (OSCAL) Workshop
toc:
enabled: true
---

# OSCAL Mini Workshop Series

The NIST [OSCAL](/) team is hosting a new series of mini workshops. They aim to address topics of interest for our community and to open this forum for its members to present their [OSCAL](/)-related work. Unless specifically stated, the workshops will not require a deep, technical understanding of [OSCAL](/), and the dialog is informal, allowing the community to interact with the presenters and with the [OSCAL](/) team members.
The NIST [OSCAL](https://www.nist.gov/OSCAL) team is hosting a new series of mini workshops, that aims to address topics of interest for our community and to open this forum for its members to present their OSCAL-related work. Unless specifically stated, the workshops will not require a deep, technical understanding of OSCAL, and the dialog is informal, allowing the community to interact with the presenters and with the OSCAL team members.

Please see below the call for proposals if you are interested in presenting your [OSCAL](/) work. To submit topics for discussion, please email us at [[email protected]]([email protected]).
Please see below the call for proposals if you are interested in presenting your OSCAL work. To submit topics for discussion, please email us at [[email protected]](mailto:[email protected]).

The [OSCAL](/) project and this workshop series are aligned with NIST’s mission of promoting U.S. innovation and industrial competitiveness by advancing measurement science, standards, and technology in ways that enhance economic security and improve our quality of life. NIST works to maximize its impact and mission fulfillment by positioning itself to anticipate future technology trends and develop the most important measurements and standards products that are aligned with industry drivers and needs.
The OSCAL project and this workshop series are aligned with NIST’s mission of promoting U.S. innovation and industrial competitiveness by advancing measurement science, standards, and technology in ways that enhance economic security and improve our quality of life. NIST works to maximize its impact and mission fulfillment by positioning itself to anticipate future technology trends and develop the most important measurements and standards products that are aligned with industry drivers and needs.

We encourage developers of control-oriented security tools, organizations that want to use or create [OSCAL](/)-based information to automate security assessment, and those planning to move towards continuous Authorization to Operate (cATO) to attend the workshops.
We encourage developers of control-oriented security tools, organizations that want to use or create OSCAL-based information to automate security assessment, and those planning to move towards continuous Authorization to Operate (cATO) to attend the workshops.

Who should attend:
- Leaders in digital transformation and security automation from the government, private, and academic sectors;
Expand All @@ -16,33 +23,33 @@ Who should attend:

## Call for Proposals

NIST [OSCAL](/) Mini Workshop program committee is seeking timely, topical, and thought-provoking **technical** **presentations or demonstrations** highlighting [OSCAL](/) editorial tools, OSCAL-based security assessment automation processes, and Governance Risk and Compliance (GRC) tools supporting OSCAL formats for integration into such processes.
NIST OSCAL Mini Workshop program committee is seeking timely, topical, and thought-provoking **technical** **presentations or demonstrations** highlighting OSCAL editorial tools, OSCAL-based security assessment automation processes, and Governance Risk and Compliance (GRC) tools supporting OSCAL formats for integration into such processes.

**NIST is not endorsing any of the OSCAL tools or services presented and presentation or demos promoting such tools or services as opposed to focusing on the OSCAL-related technical aspects will not be permitted.**

We encourage proposals from a diverse array of organizations and individuals with different perspectives, from the public and private sectors, international bodies, assessment and authorization (A&A), or certification and authorization (C&A) providers.

Please find below the calendar of proposed dates. Before submitting a proposal, please consult the calendar and indicate the preferred date with your submission and the duration of your presentation (30 min or 60 min, including Q&A). We will do our best to update the calendar as soon as a submission is approved.

Submit your proposal via email to [[email protected]]([email protected]), with the subject line: “OSCAL Workshop - [Date: yyyy/mm/dd]”, where the “Date” is the selected date from the calendar below. Please include in your submission a preassessment of the OSCAL knowledge level the audience will need using a 4-levels scale with level one (L1/bronze) being equivalent to novice and level four (L4/platinum) being an OSCAL expert.
Submit your proposal via email to [[email protected]](mailto:[email protected]), with the subject line: “OSCAL Workshop - [Date: yyyy/mm/dd]”, where the “Date” is the selected date from the calendar below. Please include in your submission a preassessment of the OSCAL knowledge level the audience will need using a 4-levels scale with level one (L1/bronze) being equivalent to novice and level four (L4/platinum) being an OSCAL expert.

## Workshops Calendar

| Date | Time | Talk/Demo/Discussion | Presenter & Affiliation | Type | Knowledge Level | Notes |
| ---- | ---- | ---------------------| ----------------------- | ---- | --------------- | ------ |
| 2022/05/18 | 11:00AM-12:00PM EDT | 1. Compliance as Code for Big Bang Risk Management Framework (RMF) Control Mapping to Accelerate Department of Defense (DoD) Authorization to Operate (ATO) | Maj Camdon Cady, Chief Operating Officer, Platform One, US Airforce | presentation | L2 | |
| | | 2. OSCAL Catalog Authoring Tool (CAT) | Dmitry Cousin, NIST |demo | L1 | |
| 2022/06/15 | 11:00AM-12:00PM EDT | 1. Trestle - compliance as codeorchestrator and automation workflow | Dr. Anca Sailer, IBM | presentation | L3 | |
| | | 2. | | | | |
| 2022/07/13 | 11:00AM-12:00PM EDT | 1. | | | | |
| | | 2. | | | | |
| 2022/08/10 | 11:00AM-12:00PM EDT | 1. | | | | |
| | | 2. | | | | |
| 2022/09/07 | 11:00AM-12:00PM EDT | 1. | | | | |
| | | 2. | | | | |
| 2022/10/05 | 11:00AM-12:00PM EDT | 1. | | | | |
| | | 2. | | | | |
| 2022/11/02 | 11:00AM-12:00PM EDT | 1. | | | | |
| | | 2. | | | | |
| 2022/11/30 | 11:00AM-12:00PM EDT | 1. | | | | |
| | | 2. | | | | |
| Date | Time | Talk/Demo/Discussion | Presenter & Affiliation | Type | Knowledge Level |
| ---- | ---- | ---------------------| ----------------------- | ---- | --------------- |
| 2022/05/18 | 11:00AM-12:00PM EDT | 1. Compliance as Code for Big Bang Risk Management Framework (RMF) Control Mapping to Accelerate Department of Defense (DoD) Authorization to Operate (ATO) | Maj Camdon Cady, Chief Operating Officer, Platform One, US Airforce & Tom Runyon, Defense Unicorns | presentation | L2 |
| | | 2. OSCAL Catalog Authoring Tool (CAT) | Dmitry Cousin, NIST |demo | L1 |
| 2022/06/15 | 11:00AM-12:00PM EDT | 1. Trestle - compliance as codeorchestrator and automation workflow | Dr. Anca Sailer, IBM | presentation | L3 |
| | | 2. | | | |
| 2022/07/13 | 11:00AM-12:00PM EDT | 1. | | | |
| | | 2. | | | |
| 2022/08/10 | 11:00AM-12:00PM EDT | 1. | | | |
| | | 2. | | | |
| 2022/09/07 | 11:00AM-12:00PM EDT | 1. | | | |
| | | 2. | | | |
| 2022/10/05 | 11:00AM-12:00PM EDT | 1. | | | |
| | | 2. | | | |
| 2022/11/02 | 11:00AM-12:00PM EDT | 1. | | | |
| | | 2. | | | |
| 2022/11/30 | 11:00AM-12:00PM EDT | 1. | | | |
| | | 2. | | | |
1 change: 1 addition & 0 deletions docs/content/learn/presentations/_index.md
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,7 @@ suppresstopiclists: true

The following are presentations on OSCAL-related topics. Some of the older presentations were based on earlier versions of OSCAL, which may be slightly different from the current OSCAL releases. In such cases, the content will still apply conceptually and will give you a good overview of the core OSCAL concepts.

- [3rd NIST OSCAL Workshop](oscal-workshop-2022-03/) - March 1-2, 2022
- [OSCAL Deep Diff Introduction](/presentations/OSCAL-deep-diff-LWtD-20220505.pdf) presented during the [Lunch with the OSCAL Developers](/contribute/dev-lunch/) - May 5, 2022
- [Blog: Innovating Security Compliance Through Open Standards](https://blogs.easydynamics.com/2021/07/07/innovating-security-compliance-through-open-standards/) - July 7, 2021
- [Blog: The Foundation for Interoperable and Portable Security Automation is Revealed in NIST’s OSCAL Project](https://www.nist.gov/blogs/cybersecurity-insights/foundation-interoperable-and-portable-security-automation-revealed) - May 19. 2021
Expand Down

0 comments on commit 6007f87

Please sign in to comment.