CSIRT Framework Development SIG
The state-of-the-art for CSIRTs could still improve considerably by extending and improving the available set of foundational frameworks and materials. The SIG will seek to involve experts interested in that work and provide a community to discuss improvements in need, existing gaps and (potential) new developments – taking into account, and collaborating where appropriate, initiatives from within FIRST and other entities/communities aiming for similar objectives (like APCERT, ENISA, GFCE, ITU, LACNIC, OCF, OAS, TF-CSIRT, etc.).
By identifying needed materials which are not readily available from other entities, the SIG will discuss needs and gaps and decide on the way forward either by:
- Bringing in a resource for improvement work after agreement by the original authors and/or copyright owners (preferably get them on board);
- Analyzing in more detail how to fill identified gaps/issues;
- Identifying the need for a more widely consolidated effort, requiring extra means or a wider audience, and taking this up within FIRST;
- Monitoring the take-up of identified gaps and issues by other entities and communities and coordinate liaisonships with such efforts;
- Taking up the (re-)drafting and publication of the CSIRT services framework should the need arise.
Goals & Deliverables
Until December 2022, the SIG aims to:
- Publish the v0.9.0 version of the CSIRT Services Framework addendum CSIRT Roles and Competencies for review of the CSIRT community by June 2022;
- Produce the v1.0 of the addendum "CSIRT Roles and Competencies" based on the review of the CSIRT community after November 15, 2022;
- Foster liaisonships with other communities/organizations supporting CSIRT capacity/capability/maturity initiatives to improve the adoption of the CSIRT Services Framework v2.1 and the new addendum (at least: APCERT, ENISA, GFCE, ITU, LACNIC, OCF, OAS, TF-CSIRT);
- Identify one other potential deliverable within the mission until October 2022 and start working on it;
- Deliver (at least) one other deliverable from the set of identified potential deliverables until April 2023.