OCSF Information Sharing
Jason Keirstead
Hello fellow PGB members. By now you have probably heard about the announcement of Open Cybersecurity Schema Format (OCSF) -
https://github.com/ocsf/, which was announced
at BlackHat last week. As I relayed to others – IBM was unfortunately under an NDA so I was unable to share this with other OCA members until now (beyond Rapid7, who was also part of the launch).
I hope for the OCA to support the mission of OCSF after it's announce. It will be up to the OCA PGB to decide if the we want to issue any official statements of support or not with OCSF, or develop any closer
relationship between the efforts. I think that regardless of if the PGB wants to support or not, we need to work on a message for the community to share our point of view. We can discuss this at the next PGB call (and also here on the mailing list of course).
- Declare an Emergency: USA +1 888 241 9812, Global +1 312 212 8034
Assistant - Mauricio Durán Cambronero (mauduran@...) See my calendar - https://ibm.biz/jkcalendar
www.opencybersecurityalliance.org
|
||||
|
||||
Jason, You mention the meetings are open to all, yet up until recently lawyers wouldn’t allow you to tell us of it’s existence. I sense some tension there. Where do I find the information on how to attend the meetings?
You mention possible OCA ‘endorsement’ of OCSF. Could you explain what OCSF is from an organization viewpoint? If there were NDA’s and lawyers then I assume it’s an industry association or a foundation or a 5013c or something. I’d like to understand ‘who’ we’d be talking about organizationally. I’d hesitate to endorse “one company” and that extends a little to ‘a cabal of companies’ unless they had some figleaf organizationally. I certainly don’t want to get into favoring AWS over Microsoft/Google/… without more understanding of exactly what we are favoring – and especially if they aren’t OCA members. I don’t want to start our own version of Japanese keiretsu.
I’d also like the answers to the various FAQs I emailed you about (the PR’s against the OCSF documentation repo https://github.com/ocsf/ocsf-docs/pulls). I recognize getting approved OCSF answers would take time. I’d like your opinion on whether OCSF is “complimentary to” or “in competition with” (or “too soon to tell”):
I am hopeful I’ll like all the answers you’d provide but I’m worried I won’t. My ‘think evilly’ part of my brain is hard to turn off so I default to assuming the worst.
-- Duncan Sparrell sFractal Consulting LLC iPhone, iTypo, iApologize I welcome VSRE emails. Learn more at http://vsre.info/
From:
oca-pgb@... <oca-pgb@...> on behalf of Jason Keirstead via lists.oasis-open-projects.org <Jason.Keirstead=ca.ibm.com@...> Hello fellow PGB members. By now you have probably heard about the announcement of Open Cybersecurity Schema Format (OCSF) -
https://github.com/ocsf/, which was announced
at BlackHat last week. As I relayed to others – IBM was unfortunately under an NDA so I was unable to share this with other OCA members until now (beyond Rapid7, who was also part of the launch).
I hope for the OCA to support the mission of OCSF after it's announce. It will be up to the OCA PGB to decide if the we want to issue any official statements of support or not with OCSF, or develop any closer
relationship between the efforts. I think that regardless of if the PGB wants to support or not, we need to work on a message for the community to share our point of view. We can discuss this at the next PGB call (and also here on the mailing list of course).
- Declare an Emergency: USA +1 888 241 9812, Global +1 312 212 8034
Assistant - Mauricio Durán Cambronero (mauduran@...) See my calendar - https://ibm.biz/jkcalendar
www.opencybersecurityalliance.org
|
||||
|
||||
Jason Keirstead
The NDA we were all under was with AWS who is the entity who kind of “got everyone together”, but is not really steering anything alone now. Currently, there is no association, or 503c, or anything of the
sort - it is just an open-source project under the Github “MVG” governance model (ref:
https://github.com/github/MVG). The slack and call info is not on Github, I am trying to figure out why - in the meantime I can invite individuals to the slack, email me directly for an invite.
- Declare an Emergency: USA +1 888 241 9812, Global +1 312 212 8034
Assistant - Mauricio Durán Cambronero (mauduran@...) See my calendar - https://ibm.biz/jkcalendar
www.opencybersecurityalliance.org
From:
oca-pgb@... <oca-pgb@...> on behalf of duncan@sfractal <duncan@...> Jason, You mention the meetings are open to all, yet up until recently lawyers wouldn’t allow you to tell us of it’s existence. I sense some tension there. Where do I find the information on how to attend the meetings? ZjQcmQRYFpfptBannerStart
ZjQcmQRYFpfptBannerEnd Jason, You mention the meetings are open to all, yet up until recently lawyers wouldn’t allow you to tell us of it’s existence. I sense some tension there. Where do I find the information on how to attend the meetings?
You mention possible OCA ‘endorsement’ of OCSF. Could you explain what OCSF is from an organization viewpoint? If there were NDA’s and lawyers then I assume it’s an industry association or a foundation or a 5013c or something. I’d like to understand ‘who’ we’d be talking about organizationally. I’d hesitate to endorse “one company” and that extends a little to ‘a cabal of companies’ unless they had some figleaf organizationally. I certainly don’t want to get into favoring AWS over Microsoft/Google/… without more understanding of exactly what we are favoring – and especially if they aren’t OCA members. I don’t want to start our own version of Japanese keiretsu.
I’d also like the answers to the various FAQs I emailed you about (the PR’s against the OCSF documentation repo https://github.com/ocsf/ocsf-docs/pulls). I recognize getting approved OCSF answers would take time. I’d like your opinion on whether OCSF is “complimentary to” or “in competition with” (or “too soon to tell”):
I am hopeful I’ll like all the answers you’d provide but I’m worried I won’t. My ‘think evilly’ part of my brain is hard to turn off so I default to assuming the worst.
-- Duncan Sparrell sFractal Consulting LLC iPhone, iTypo, iApologize I welcome VSRE emails. Learn more at http://vsre.info/
From:
oca-pgb@... <oca-pgb@...> on behalf of Jason Keirstead via lists.oasis-open-projects.org <Jason.Keirstead=ca.ibm.com@...> Hello fellow PGB members. By now you have probably heard about the announcement of Open Cybersecurity Schema Format (OCSF) -
https://github.com/ocsf/, which was announced at BlackHat last week. As I relayed to others
– IBM was unfortunately under an NDA so I was unable to share this with other OCA members until now (beyond Rapid7, who was also part of the launch).
I hope for the OCA to support the mission of OCSF after it's announce. It will be up to the OCA PGB to decide if the we want to issue any official statements of support or not with OCSF, or develop any closer
relationship between the efforts. I think that regardless of if the PGB wants to support or not, we need to work on a message for the community to share our point of view. We can discuss this at the next PGB call (and also here on the mailing list of course).
- Declare an Emergency: USA +1 888 241 9812, Global +1 312 212 8034
Assistant - Mauricio Durán Cambronero (mauduran@...) See my calendar - https://ibm.biz/jkcalendar
www.opencybersecurityalliance.org
|
||||
|
||||
Great. Thank you.
-- Duncan Sparrell sFractal Consulting LLC iPhone, iTypo, iApologize I welcome VSRE emails. Learn more at http://vsre.info/
From:
oca-pgb@... <oca-pgb@...> on behalf of Jason Keirstead via lists.oasis-open-projects.org <Jason.Keirstead=ca.ibm.com@...> The NDA we were all under was with AWS who is the entity who kind of “got everyone together”, but is not really steering anything alone now. Currently, there is no association, or 503c, or anything of the
sort - it is just an open-source project under the Github “MVG” governance model (ref:
https://github.com/github/MVG). The slack and call info is not on Github, I am trying to figure out why - in the meantime I can invite individuals to the slack, email me directly for an invite.
- Declare an Emergency: USA +1 888 241 9812, Global +1 312 212 8034
Assistant - Mauricio Durán Cambronero (mauduran@...) See my calendar - https://ibm.biz/jkcalendar
www.opencybersecurityalliance.org
From:
oca-pgb@... <oca-pgb@...> on behalf of duncan@sfractal <duncan@...> Jason, You mention the meetings are open to all, yet up until recently lawyers wouldn’t allow you to tell us of it’s existence. I sense some tension there. Where do I find the information on how to attend the meetings? ZjQcmQRYFpfptBannerStart
ZjQcmQRYFpfptBannerEnd Jason, You mention the meetings are open to all, yet up until recently lawyers wouldn’t allow you to tell us of it’s existence. I sense some tension there. Where do I find the information on how to attend the meetings?
You mention possible OCA ‘endorsement’ of OCSF. Could you explain what OCSF is from an organization viewpoint? If there were NDA’s and lawyers then I assume it’s an industry association or a foundation or a 5013c or something. I’d like to understand ‘who’ we’d be talking about organizationally. I’d hesitate to endorse “one company” and that extends a little to ‘a cabal of companies’ unless they had some figleaf organizationally. I certainly don’t want to get into favoring AWS over Microsoft/Google/… without more understanding of exactly what we are favoring – and especially if they aren’t OCA members. I don’t want to start our own version of Japanese keiretsu.
I’d also like the answers to the various FAQs I emailed you about (the PR’s against the OCSF documentation repo https://github.com/ocsf/ocsf-docs/pulls). I recognize getting approved OCSF answers would take time. I’d like your opinion on whether OCSF is “complimentary to” or “in competition with” (or “too soon to tell”):
I am hopeful I’ll like all the answers you’d provide but I’m worried I won’t. My ‘think evilly’ part of my brain is hard to turn off so I default to assuming the worst.
-- Duncan Sparrell sFractal Consulting LLC iPhone, iTypo, iApologize I welcome VSRE emails. Learn more at http://vsre.info/
From:
oca-pgb@... <oca-pgb@...> on behalf of Jason Keirstead via lists.oasis-open-projects.org <Jason.Keirstead=ca.ibm.com@...> Hello fellow PGB members. By now you have probably heard about the announcement of Open Cybersecurity Schema Format (OCSF) -
https://github.com/ocsf/, which was announced
at BlackHat last week. As I relayed to others – IBM was unfortunately under an NDA so I was unable to share this with other OCA members until now (beyond Rapid7, who was also part of the launch).
I hope for the OCA to support the mission of OCSF after it's announce. It will be up to the OCA PGB to decide if the we want to issue any official statements of support or not with OCSF, or develop any closer
relationship between the efforts. I think that regardless of if the PGB wants to support or not, we need to work on a message for the community to share our point of view. We can discuss this at the next PGB call (and also here on the mailing list of course).
- Declare an Emergency: USA +1 888 241 9812, Global +1 312 212 8034
Assistant - Mauricio Durán Cambronero (mauduran@...) See my calendar - https://ibm.biz/jkcalendar
www.opencybersecurityalliance.org
|
||||
|