-
Notifications
You must be signed in to change notification settings - Fork 0
[3.12] Regulatory & policy alignment #12
Copy link
Copy link
Open
Labels
aspect:regulatory3.12 Regulatory & policy alignment3.12 Regulatory & policy alignmentneeds:ownerNo aspect owner assigned yetNo aspect owner assigned yetstatus:deliberatingOpen argument — options being exploredOpen argument — options being exploredtype:decisionA concrete choice to be resolvedA concrete choice to be resolved
Metadata
Metadata
Assignees
Labels
aspect:regulatory3.12 Regulatory & policy alignment3.12 Regulatory & policy alignmentneeds:ownerNo aspect owner assigned yetNo aspect owner assigned yetstatus:deliberatingOpen argument — options being exploredOpen argument — options being exploredtype:decisionA concrete choice to be resolvedA concrete choice to be resolved
Type
Fields
Give feedbackNo fields configured for issues without a type.
Aspect
Section: 3.12 Regulatory and policy alignment
Orientation relevance: both
Objective
Decide whether and how a profile declares the regulatory or policy expectations it helps
satisfy, while keeping the methodology itself independent of any single regime.
Background & links
Scoping document §3.12. A common driver for profiles is satisfying multiple regulators with a
single artifact. Context worth referencing without binding the method to it: the NIS
Cooperation Group roadmap's call for a standardised cryptographic-inventory format; EU CRA /
TR-03183 SBOM trajectory; US cryptographic-inventory expectations.
Options under consideration
non-normative metadata. (Trade-off: low coupling; advisory only.)
compliance evidence; higher maintenance as regimes change.)
Open questions
Dependencies
Relates to objective/scope (3.1 #4) and governance/maintenance (3.11 #11).
Decision
Not yet decided.
Impact on the specification
Spec section "Regulatory and policy alignment."