Appropriate Access: Levels of Assurance

Thursday, February 14 | 11:15AM–12:30PM | Palm A/D
Session Type: Professional Development
A level of assurance (LoA) refers to the degree of certainty that (1) a resource owner has that a person's physical self has been adequately verified before credentials are issued by a registration authority, and (2) a user indeed owns the credentials they are subsequently presenting to access the resource. The requirements for the level of certainty at both ends of that set of transactions should be driven by a risk assessment based on the value of the resources being protected. This session will describe the concept of LoA, discuss its importance, outline its technical components, and discuss the proposition that roles of the identity management and security staff are critical for a successful implementation of LoA.

Presenters

  • Stefan Wahe

    CIO/IT Director UW-Madison College of Ag & Life Sciences, University of Wisconsin-Madison
  • David Wasley

    Retired, University of California, Office of the President

Resources & Downloads