ISO 16919:2014
Space data and information transfer systems — Requirements for bodies providing audit and certification of candidate trustworthy digital repositories
Space data and information transfer systems — Requirements for bodies providing audit and certification of candidate trustworthy digital repositories
- Статус документа:
- Отменён
- Формат:
- Электронный (PDF)
- Количество страниц:
- 22
- Дата публикации:
- 29 октября 2014 г.
- Издание:
- ISO IS 16919 edition 1 version 1
- ICS:
- 03.120.20
ISO 16919:2014 is meant primarily for those setting up and managing the organization performing the auditing and certification of digital repositories. It should also be of use to those who work in or are responsible for digital repositories seeking objective measurement of the trustworthiness of their repository and wishing to understand the processes involved. The main purpose is to define a CCSDS Recommended Practice (and ISO International Standard) on which to base the operations of the organization(s) which assess the trustworthiness of digital repositories using ISO 16363 and provide the appropriate certification. ISO 16919:2014 specifies requirements for bodies providing audit and certification of digital repositories, based on the metrics contained within ISO/IEC 17021 and CCSDS 652.0-M-1/ISO 16363. It is primarily intended to support the accreditation of bodies providing such certification. ISO/IEC 17021 provides the bulk of the requirements on bodies offering audit and certification for general types of management systems. However, for each specific type of system, specific additional requirements will be needed, for example, to specify the standard against which the audit is to be made and the qualifications which auditors require. ISO 16919:2014 provides the (small number of) specific additions required for bodies providing audit and certification of candidate trustworthy digital repositories. Trustworthy here means that they can be trusted to maintain, over the long-term, the understandability and usability of digitally encoded information placed into their safekeeping. In order improve readability, the clause numbers are kept consistent with those of ISO/IEC 17021. Some subclauses are applicable as they stand, and these are simply enumerated; otherwise additions to subclauses are explicitly given. In the former case, the clauses may consist of just a few sentences. As a result, this document must be read in conjunction with ISO/IEC 17021. The requirements contained in this document need to be demonstrated in terms of competence and reliability by any organization or body providing certification of digital repositories.
Abstract
Overview
ISO 16919:2014 - Space data and information transfer systems - Requirements for bodies providing audit and certification of candidate trustworthy digital repositories - defines the specific requirements for organizations that audit and certify digital repositories for long‑term trustworthiness. It is written to be read in conjunction with ISO/IEC 17021 (general audit/certification body requirements) and uses the repository metrics in CCSDS 652.0-M-1 / ISO 16363 (audit and certification of trustworthy digital repositories). ISO 16919:2014 supports accreditation of certification bodies and clarifies the additional, repository‑specific expectations auditors and certification bodies must meet.
Key topics and technical requirements
ISO 16919:2014 supplements ISO/IEC 17021 with a focused set of additions for repository certification. Key topics include:
- Scope and purpose: Requirements for bodies that assess repository trustworthiness using ISO 16363 metrics.
- Principles: Foundational expectations for impartiality, competence and reliability of certification bodies.
- General and structural requirements: Legal and contractual matters, management of impartiality, liability and financing.
- Resource and personnel requirements: Competence of management and personnel, qualifications for auditors, use of external auditors and technical experts, personnel records and outsourcing.
- Information requirements: Publicly accessible information, certification documents, a directory of certified clients, confidentiality, and permitted reference to certification and use of marks.
- Process and management system requirements: Audit processes, decision‑making and the certification body’s management system consistent with ISO/IEC 17021.
- Annexes: Required Trusted Digital Repository Management System (TDRMS) competencies (normative) and security considerations (informative).
Practical applications and who uses it
ISO 16919:2014 is primarily for:
- Audit and certification bodies establishing or operating certification programs for trustworthy digital repositories.
- Accreditation bodies that assess and accredit repository certification organizations.
- Repository managers and stewards seeking objective measurement or certification of their long‑term digital preservation practices.
- Technical experts and auditors who need defined competency requirements and process expectations for repository audits.
Practical uses include building compliant audit processes, defining auditor qualifications for digital preservation assessments, creating public certification records, and supporting accreditation applications.
Related standards (key references)
- ISO/IEC 17021 - Conformity assessment - Requirements for certification bodies.
- ISO 16363 / CCSDS 652.0-M-1 - Audit and certification of trustworthy digital repositories.
- CCSDS 652.1-M-2 - CCSDS Recommended Practice on requirements for bodies providing audit and certification (basis for ISO 16919).
Keywords: ISO 16919:2014, trustworthy digital repository, repository audit and certification, ISO 16363, ISO/IEC 17021, CCSDS, digital preservation, accreditation.
Технические детали
- Технический комитет
- ISO/TC 20/SC 13 - Space data and information transfer systems
- SKU
- ISO 16919:2014
Похожие стандарты
Стандарты, упомянутые в описании