usnistgov / oscal-content

NIST SP 800-53 content and other OSCAL content examples
Other
312 stars 124 forks source link

Display catalog entries for profiles for four more frameworks #5

Closed kscarfone closed 2 years ago

kscarfone commented 7 years ago

User Story Candidate: As a compliance auditor, I can see all control catalog entries that correspond to profiles for at least four other frameworks (possible selections include FedRAMP, HIPAA, NIST CSF, and PCI DSS). Required Resources:

kscarfone commented 7 years ago

Resource locations:

david-waltermire commented 6 years ago

We are differentiating between a Profile, which would represent FedRAMP baselines, catalogs (i.e., SP 800-53, ISO/IEC 27001, and COBIT), and frameworks (i.e. HIPPA, NIST CSF, PCI DSS). We should rephrase and/or breakup this user story to reflect these semantics. We may want to make the framework efforts dependent on usnistgov/OSCAL#53.

david-waltermire commented 2 years ago

These frameworks are outside the scope of the OSCAL team's current efforts. Closing. New specific issues can be created in the future where needed.