usnistgov / capordino

Cybersecurity & Privacy open Reference Data in OSCAL
Other
1 stars 2 forks source link

Compare the CPRT CSF 2.0 JSON with OSCAL CSF 2.0 #8

Closed nkeller08 closed 8 months ago

nkeller08 commented 11 months ago

Compare data sets from the CPRT CSF 2.0 JSON and OSCAL CSF 2.0 to map the data between CPRT and OSCAL. Create diagram(s) to visualize it and incorporate them in an ADR.

nkeller08 commented 11 months ago

Here is the first draft of the data visualization diagram: CPRT to OSCAL.pdf

iMichaela commented 11 months ago

The diagram looks nice, but I would like for us to review it. The CPRT/title is the element that needs to be parsed (or use the parser from the current tool) into multiple OSCAL elements.

Also, in OSCAL, there are fields and elements that can be hierarchical. Let's take a small example , follow the diagram and see then if we get the correct OSCAL.

nkeller08 commented 11 months ago

CPRT to OSCAL (1).pdf This includes examples of data and how it goes from CPRT to OSCAL, we can discuss in the meeting tomorrow.