Trust and Certification: the case for Trustworthy Digital Repositories. RDA Europe webinar, 14 February 2017 Ingrid Dillo, DANS, The Netherlands

Similar documents
Certification. F. Genova (thanks to I. Dillo and Hervé L Hours)

European digital repository certification: the way forward

Certification as a means of providing trust: the European framework. Ingrid Dillo Data Archiving and Networked Services

Assessing the FAIRness of Datasets in Trustworthy Digital Repositories: a 5 star scale

GEOSS Data Management Principles: Importance and Implementation

Trusted Digital Archives

Ensuring Proper Storage for Earth Science Data: The USGS Process to Certify Trusted Digital Repositories

Improving a Trustworthy Data Repository with ISO 16363

DSA WDS Partnership Working Group Catalogue of Common Requirements

Audit & Certification: an auditors perspective. Barbara Sierman, KB National Library of the Netherlands Royal Irish Academy, Dublin 4 june 2013

Agenda. Bibliography

Certification Efforts at Nestor Working Group and cooperation with Certification Efforts at RLG/OCLC to become an international ISO standard

DSA WDS Partnership Working Group Catalogue of Common Requirements

Conducting a Self-Assessment of a Long-Term Archive for Interdisciplinary Scientific Data as a Trustworthy Digital Repository

DEVELOPING, ENABLING, AND SUPPORTING DATA AND REPOSITORY CERTIFICATION

DCH-RP Trust-Building Report

International Audit and Certification of Digital Repositories

Basic Requirements for Research Infrastructures in Europe

Science Europe Consultation on Research Data Management

Indiana University Research Technology and the Research Data Alliance

How FAIR am I? FAIR Principles and Interoperability of Data and Tools

Core Trustworthy Data Repositories Extended Guidance. Core Trustworthy Data Repositories Requirements for Extended Guidance

DRI: Preservation Planning Case Study Getting Started in Digital Preservation Digital Preservation Coalition November 2013 Dublin, Ireland

DRI: Dr Aileen O Carroll Policy Manager Digital Repository of Ireland Royal Irish Academy

Data Curation Handbook Steps

Trusted Digital Repositories. A systems approach to determining trustworthiness using DRAMBORA

Digital Preservation Standards Using ISO for assessment

Developing a social science data platform. Ron Dekker Director CESSDA

Conferenza GARR Moving Forward to deliver an «EOSC in Practice» by 2018

31 March 2012 Literature Review #4 Jewel H. Ward

PROTERRA CERTIFICATION PROTOCOL V2.2

Striving for efficiency

Applying Archival Science to Digital Curation: Advocacy for the Archivist s Role in Implementing and Managing Trusted Digital Repositories

The Research Data Alliance (RDA): building global data connections CC BY-SA 4.0

Digital Preservation Policy. Principles of digital preservation at the Data Archive for the Social Sciences

How can CLARIN archive and curate my resources?

CPA National Accreditation Standards for the ACAF Program and Applied Courses. Effective: May 19, 2017

Scientific Research Data Management Policy

Implementation of the Data Seal of Approval

Sustainable Governance for Long-Term Stewardship of Earth Science Data

UNT Libraries TRAC Audit Checklist

ISO Self-Assessment at the British Library. Caylin Smith Repository

ILNAS/PSCQ/Pr004 Qualification of technical assessors

Implementation of the CoreTrustSeal

Building an Assurance Foundation for 21 st Century Information Systems and Networks

For Attribution: Developing Data Attribution and Citation Practices and Standards

Jelena Roljevic Assistant Vice President, Business Intelligence Ronald Layne Data Governance and Data Quality Manager

EUDAT. A European Collaborative Data Infrastructure. Daan Broeder The Language Archive MPI for Psycholinguistics CLARIN, DASISH, EUDAT

Preservation. Policy number: PP th March Table of Contents

CoSA & Preservica Practical Digital Preservation 2015/16. Achieving ISO Standards for your Digital Archive October 27, :00-15:00 EDT

BPMN Processes for machine-actionable DMPs

"Energy and Ecological Transition for the Climate" Label Control and Monitoring Plan Guidelines

EUDAT. Towards a pan-european Collaborative Data Infrastructure

NRF Open Access Statement Impact Survey

April 17, Ronald Layne Manager, Data Quality and Data Governance

Implementation of the Data Seal of Approval

University of British Columbia Library. Persistent Digital Collections Implementation Plan. Final project report Summary version

CHARTER OUR MISSION OUR OBJECTIVES OUR GUIDING PRINCIPLES

PEFC Norway Standard Document PEFC Norway ST 2002:2009 Issue

EN CEPA CERTIFIED: HERE IS HOW IT WORKS DQS - COMPETENCE FOR SUSTAINABILITY

About Knowledge Convergence. e-infrastructures Austria an interdisciplinary case study concerning research resources and their management

ARTICLE 29 DATA PROTECTION WORKING PARTY

From production to preservation to access to use: OAIS, TDR, and the FDLP OAIS TRAC / TDR

Towards FAIRness: some reflections from an Earth Science perspective

Global Specification Protocol for Organisations Certifying to an ISO Standard related to Market, Opinion and Social Research.

Sharing research data globally and supporting re-use - Playing your part Leif Laaksonen /National Archive of Finland

Paving the Rocky Road Toward Open and FAIR in the Field Sciences

Implementation of the Data Seal of Approval

PEFC N 04 Requirements for certification bodies and accreditation bodies

EA-7/05 - EA Guidance on the Application of ISO/IEC 17021:2006 for Combined Audits

European Cyber Security Certification: ECSO Meta-Scheme Approach

Caring for research data and what about software? Peter Doorn, director DANS

2018 CANADIAN ELECTRICAL CODE UPDATE TRAINING PROVIDER PROGRAM Guidelines

Brief introduction of WG 3

Data Discovery - Introduction

Guidelines for Depositors

Edinburgh DataShare: Tackling research data in a DSpace institutional repository

FAIR-aligned Scientific Repositories: Essential Infrastructure for Open and FAIR Data

IT Governance ISO/IEC 27001:2013 ISMS Implementation. Service description. Protect Comply Thrive

Large Scale Repository Auditing to ISO José Carvalho

Professional Evaluation and Certification Board Frequently Asked Questions

Guidelines 4/2018 on the accreditation of certification bodies under Article 43 of the General Data Protection Regulation (2016/679)

Importance of the Data Management process in setting up the GDPR within a company CREOBIS

ISO / IEC 27001:2005. A brief introduction. Dimitris Petropoulos Managing Director ENCODE Middle East September 2006

Progress towards the EOSC

EVALUATION AND APPROVAL OF AUDITORS. Deliverable 4.4.3: Design of a governmental Social Responsibility and Quality Certification System

PROJECT FINAL REPORT. Tel: Fax:

Strategy for long term preservation of material collected for the Netarchive by the Royal Library and the State and University Library 2014

Security and Privacy Governance Program Guidelines

The Smart Campaign: Introducing Certification

EUDAT Towards a Collaborative Data Infrastructure

THE ENERGY MANAGEMENT WORKING GROUP

GUIDE ON APPLICATION FOR ROUNDTABLE FOR SUSTAINABLE PALM OIL PRINCIPLES AND CRITERIA (RSPO P & C) INCLUDING GROUP CERTIFICATION

Standard Setting and Revision Procedure

Developing a Research Data Policy

PCN CRITERIA FOR THE APPOINTMENT OF LEVEL 3 TECHNICIANS FOR GUIDED WAVE TESTING AS A TRANSITIONAL ARRANGEMENT

EUDAT. Towards a pan-european Collaborative Data Infrastructure

Checklist and guidance for a Data Management Plan, v1.0

John Snare Chair Standards Australia Committee IT/12/4

Global Data Sharing The Research Data Alliance

Transcription:

Trust and Certification: the case for Trustworthy Digital Repositories RDA Europe webinar, 14 February 2017 Ingrid Dillo, DANS, The Netherlands

Perhaps the biggest challenge in sharing data is trust: how do you create a system robust enough for scientists to trust that, if they share, their data won t be lost, garbled, stolen or misused? 2

Trust 3 Trust is at the very heart of storing and sharing data Users Depositors Funders

What is trust built on? 4 Dedicate yourself (mission statement) Do what you promise (stable, sincere and competent reputation) Be transparent (peer review, get certified)

Trust in data repositories: transparency 5

Building blocks of trustworthiness 6 actions and attributes of the trustee (integrity, transparency, competence, predictability, guarantees, positive intentions) external acknowledgements: reputation (researchers), third party endorsements (funders)

Certification of digital repositories 7 Standards can play an important role in establishing trust

European framework levels 8 Core Certification is granted to repositories which obtain DSA certification Extended Certification is granted to repositories which perform a structured, externally reviewed and publicly available selfaudit based on DIN 31644 Formal Certification is granted to repositories which obtain full external audit and certification based on ISO16363

Global framework 9

DSA key characteristics 10 Basic light-weight certification standard 16 Guidelines for Trustworthy Digital Repositories Self-assessment, no external auditors or site visit Peer review process supervised by international DSA Board Online tool for self-assessment and review DSA granted for a period of 2 years Open, transparent and inclusive (public self assessment) Focus on social sciences and humanities Strong in Europe (CESSDA, CLARIN, DARIAH, EUDAT) Around 65 seals acquired

WDS key characteristics 11 World Data System part of ICSU Light-weight certification procedure for regular and network members Based on self assessment Peer review by WDS Scientific Committee Focus on earth and spatial sciences Many members in US and Asia Renewal between 3 and 5 years Some 70 accredited members

DIN 31644: extended certification 12 34 criteria written by German NESTOR-group and adopted in Germany as DIN31644 Self-assessment procedure by NESTOR leads to NESTOR seal Review of the assessment by 2 reviewers, appointed by NESTOR Self assessment and evidence on website 2 seals acquired (DANS and DNB) http://www.langzeitarchivierung.de/subsites/nestor/en/nestor- Siegel/siegel_node.htm l

ISO 16363: formal certification 13 Based on Open Archival Information System (OAIS) and Trusted Repository Audit and Certification (TRAC) Over 100 metrics Test audits 2011 by PTAB (Primary Trustworthy Digital Repository Authorisation Body) Full external auditing process ISO 16919: Requirements for bodies providing audit and certification of candidate trustworthy digital repositories No formal ISO certifications yet.. http://www.iso16363.org/

DSA and WDS: look-a-likes 14 Communalities: Lightweight, community review Complementarity: Geographical spread Disciplinary spread

The umbrella of the RDA 15 Research Data Alliance: aims to build the social and technical bridges that enable open sharing of data WGs and IGs working on a large variety of topics WG consisting of representatives from both organizations has explored and developed a DSA WDS Partnership (18 months)

Partnership goals 16 Realizing efficiencies Simplifying assessment options Stimulating more certifications Increasing impact on the community

Working Group outcomes 17 Common catalogue of requirements for core repository assessment Common procedures for assessment Shared testbed for assessment

New common requirements 18 Context (1) Organizational infrastructure (6) Digital object management (8) Technology (2) Additional information and applicant feedback (2)

Requirement compliance levels 19 0 Not applicable 1 The repository has not considered this yet 2 The repository has a theoretical concept 3 The repository is in the implementation phase 4 The guideline has been fully implemented in the repository.. to foster the applicants own understanding of the current status/maturity of their repositories

Context 20 Repository type Brief description of the repository s designated community Level of curation performed Outsource partners

Organisational infrastructure 21 R1. The repository has an explicit mission to provide access to and preserve data in its domain. R2. The repository maintains all applicable licenses covering data access and use and monitors compliance. R3. The repository has a continuity plan to ensure ongoing access to and preservation of its holdings. R4. The repository ensures, to the extent possible, that data are created, curated, accessed, and used in compliance with disciplinary and ethical norms. R5. The repository has adequate funding and sufficient numbers of qualified staff managed through a clear system of governance to effectively carry out the mission. R6. The repository adopts mechanism(s) to secure ongoing expert guidance and feedback (either in-house, or external, including scientific guidance, if relevant).

Digital object management (1) 22 R7. The repository guarantees the integrity and authenticity of the data. R8. The repository accepts data and metadata based on defined criteria to ensure relevance and understandability for data users. R9. The repository applies documented processes and procedures in managing archival storage of the data. R10. The repository assumes responsibility for long-term preservation and manages this function in a planned and documented way.

Digital object management (2) 23 R11. The repository has appropriate expertise to address technical data and metadata quality and ensures that sufficient information is available for end users to make quality-related evaluations. R12. Archiving takes place according to defined workflows from ingest to dissemination. R13. The repository enables users to discover the data and refer to them in a persistent way through proper citation. R14. The repository enables reuse of the data over time, ensuring that appropriate metadata are available to support the understanding and use of the data.

Technical infrastructure 24 R15. The repository functions on well-supported operating systems and other core infrastructural software and is using hardware and software technologies appropriate to the services it provides to its Designated Community. R16. The technical infrastructure of the repository provides for protection of the facility and its data, products, services, and users.

25

New requirements are out now! 26 http://www.datasealofapproval.org/en/news-and-events/news/2016/11/25/wds-and-dsaannounce-uni-ed-requirements-core-cert/ https://www.icsu-wds.org/news/news-archive/wds-dsa-unified-requirements-for-corecertification-of-trustworthy-data-repositories

Common procedures 27 Parallel Assessment Processes: URLs to evidence strongly encouraged Maturity ratings strongly encouraged Assessments to be publicly available Successful completion means certification in both DSA and WDS Renewals every three years

Common procedures 28 Sustainable Review Process Pool of reviewers (training provided) drawn from DSA and WDS Two reviewers (from DSA and WDS) for each application, approved by the new DSA WDS Certification Board Mutual Governance Process DSA and WDS agree to work together to implement and steward the partnership

Testbed 29 2 DSA applicants 4 WDS applicants Overall positive results Minor tweaks More explanations

Why do we do this at DANS? 30 Certification as a means to build trust in our repository with our clients, both depositors and users of data, with our partner organizations and with research funders Certification as a big stick to further develop and professionalize our core services, workflows and our organization as a whole

Benefits and value of core certification (as noted by DSA-repositories) 31 Builds stakeholder confidence in the repository Improves communication within the repository Improves repository processes Ensures transparency Differentiates the repository from others Saves time and labor over other certification methods

Thank you very much for listening! 32 ingrid.dillo@dans.knaw.nl www.dans.knaw.nl http://datasealofapproval.org/en/ https://www.icsu-wds.org/services/certification https://rd-alliance.org/group/repository-audit-and-certification-dsa wdspartnership-wg/outcomes/dsa-wds-partership