You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 32 Next »

(green star)Objective

Consistent with ICANN’s mission and Bylaws, Section 4.6(e)(ii), the review team will assess the extent to which the implementation of today’s WHOIS (the current gTLD RDS) safeguards registrant data by (a) identifying the lifecycle of registrant data, (b) determining if/how data is safeguarded in each phase of that lifecycle, (c) identifying high-priority gaps (if any) in safeguarding registrant data, and (d) recommending specific measureable steps (if any) the team believes are important to fill gaps. 

Background Documents

Further background documents may be found on the Review Team's overall Background Materials page.


(blue star) Leader/Rapporteur: Alan Greenberg

(blue star)Members: Alan Greenberg, Dmitry Belyavsky, Stephanie Perrin, Volker Greimann

(blue star)Mailing-list archives:  http://mm.icann.org/pipermail/rds-whois2-safeguard/

(blue star)Conference calls

(blue star)Review Team Templates: see here


Subgroup Documents

Date

Document (Versions in Red are latest)

File

Subgroup report

 

v4DOCX

 

v3DOCX

 

v2DOCX

 

v1DOCX
Face-to-Face Mtg #2 Slides - Findings

 

v2

PPTX

 

v1PPTX
Work plan (as per Alan's email)

 

v1EMAIL
Planning questions

 

v2PPTX

 

v1PPT
First Pass Document

 

v4DOCX

 

v3DOCX

 

v2

DOCX

 

v1DOCX

Open Actions/Requests

*To be provided once reasonable date is determined by appropriate subject-matter expert

Item #Source of RequestDate of RequestAction Item RequestAction Owner

Anticipated Completion Date*

Progress Notes
7Email

 

Contract signed with escrow providers so that we may understand what processes, constraints or rules escrow providers are subject to regarding safeguarding data while under their custody and in relation to any data breaches that may be discovered. If the contracts are all substantially identical, then the standard boiler-plate contract will be sufficient. If the contracts are significantly tailored, the we request copies of the actual contracts for Iron Mountain and one other provider. If that requires a non-disclosure agreement, we are willing to sign one.ICANN orgTBD

Completed Actions/Requests

*To be provided once reasonable date is determined by appropriate subject-matter expert

Item #Source of RequestDate of RequestAction Item RequestAction Owner

Anticipated Completion Date*

Progress NotesCompleted ResponseCompletion Date
6#27

 

Subgroup members to send a quick status update to the review teamCLOSEDCLOSED


5#26

 

Alan to confirm revisions made RT agreements. CLOSEDCLOSED


4#26

 

Stephanie to provide draft formulation to AlanCLOSEDCLOSED


3#26

 

Alan to refine question number 3.CLOSEDCLOSED


2#26

 

Questions for ICANN org :

○       What are contractual requirements to secure stored escrow data

○       What are contractual requirements to notify ICANN in the event of breach

○       How do you secure registrant data under your control?

CLOSEDCLOSED


1#25

 

Alan plans to share his first draft of subgroup draft report with the subgroup/RT for review in parallel by the end of the weekend.Alan

Email

 

Decisions Reached

DateDecision
  • No labels