From: benigni@nist.gov
Sent: Thursday, September 13, 2007 7:18 AM
To: incits-cs1@lyris.itic.org
Cc: Benigni, Dan
Subject: [incits-cs1] Approving CS1/07-0243 as the US NB response to SC
27 N5737: T=2007-09-17

Attachments: cs1070243 US NB Proposed Comments on N5737 Preliminary
Draft 27034-1.pdf


CS1 Members:

Document:  CS1/07-0248
Date:  September 13, 2007
Ballot Period: 5 days
Ballot Closes:  Midnight EDT Monday, September 17, 2007 Return to: Dan Benigni (dbenigni@nist.gov) and Scott Erkonen ( scott.erkonen@hotskills-inc.com)

Subject:  The US National Body votes to Approve CS1/07-0243 as the US NB response to SC 27 N5737.  

N5737, Text for preliminary draft for ISO/IEC 27034-1 -- Information technology - Security techniques -- Application security -- Part 1: Guidelines for application security, is attached.  
 
Permission to conduct an accelerated Letter Ballot was granted by the INCITS Secretariat.
 
Statement:  This is a 5-day Accelerated Letter Ballot.  Please note that this ballot closes at midnight EDT Monday September 17, 2007.  

Background:  As discussed at the CS1 meeting in Lexington, KY last week, it was agreed that a straw poll would be run on N5737, followed by an accelerated Letter Ballot if contributions were received.  It was noted that the document should have been out for national body review and comment by July 9, 2007, according to the Russian resolutions.  Instead the document was sent out on August 22, 2007, providing less than one month to respond with US NB comments, instead of the required two months.  And it provided no time for CS1 to deal with it at our September meeting just concluded.  This will be brought to the attention of the SC 27 Secretariat.

The comments that came in from four sources required the formation of an ad hoc committee to combine them in a coherent fashion.  A special thanks to Laura Kuiper, CS1 Secretary and WG 4 HOD for the upcoming SC 27 meetings in Lucerne, for chairing the ad hoc committee, and to the CS1 members who worked yesterday in crafting the proposed US NB comments you are now voting on.  

Two further points:

(1) As I had pointed out prior to the ad hoc meeting, the file name for CS1/07-
0212 was changed to reflect the fact that it became at the Lexington CS1 meeting a US NB Contribution, renamed “CS1/07-0212 US NB Contribution to N5729 NWI Guidelines application security and N5907 security design SG”.  I routinely do this for all files that CS1 votes to submit as US NB Comments.  So I have made that change to the comment in the proposed set to reflect that, since this what SC 27 folks will see as the title.  

(2) Do not let the effort of these folks go in vain—I need at least a majority of folks voting on this, and a 2/3 in the positive direction, in the next 5 days, if these are to be the US NB comments on N5737.

Question for ballot:

Do you approve the submission of the CS1 recommendation (CS1/07-0243) as proposed?

YES ______ NO _______ABSTAIN ________
Comments:________________________________________________
Name:_____________________________
Signature:___________________________
Organization Represented:________________________________
Principal:________ Alternate:______
Date:_________________

Recall that if you vote NO or ABSTAIN, you are required to provide comments (in the case of a NO, please indicate, if applicable, what changes in the proposed would permit you to vote YES).

American National Standards are developed by the voluntary participation of all parties and with the intention and expectation that the standards will be suitable for wide application. Since their use is likewise voluntary, an affirmative vote does not commit an organization or group represented on the committee to the use of the American National Standard under consideration.  If you find that you cannot vote YES and wish to vote NO or ABSTAIN, please state this and explain the reasons for your position in the space provided or on a separate sheet.

Accredited Standards Committee* (INCITS Form003) INCITS, InterNational Committee for Information Technology Standards Authorized by INCITS Procedures -
- Distributed by INCITS Subgroup

*Operating under the American National Standards Institute Procedures INCITS Secretariat, Information Technology Industries Council (ITI) 1250 Eye Street NW, Suite 200, Washington DC 20005
Email: incits@itic.org FAX: 202-638-4922 ________ Please be advised that replying to this message goes to the sender. If you wish to send a reply to all on the list, please respond with "Reply All".
_____________
This mailing list may not be used for unlawful purposes. All postings should be relevant, but ITI accepts no responsibility for any posting and may terminate access to any subscriber violating any policies of the Association.  Please review the INCITS Anti-Trust Guidelines at < http://www.incits.org/inatrust.htm



---
You are currently subscribed to incits-cs1 as: dspittle@itic.org.