Whitepaper: PIV-I Cards Provide Efficiency, Trust for State, Local Governments

Educating state and local governments on Personal Identity Verification Interoperable credentials (PIV-I) is the aim of a new whitepaper released by the Smart Card Alliance. PIV-I, based on the same framework as the Personal Identity Verification (PIV) cards that been issued to more than 5 million federal employees and contractors, provides a way for state and local governments to enable interoperability and trust for a wide variety of identity credentialing programs.

The whitepaper, “Personal Identity Verification Interoperability (PIV-I) for Non-Federal Issuers: Trusted Identities for Citizens across States, Counties, Cities and Businesses,” was developed by the Smart Card Alliance Physical Access Council and Identity Council, with input from the National Association of State Chief Information Officers (NASCIO). It is available for download at http://www.smartcardalliance.org/pages/publications-piv-i-for-non-federal-issuers.

“Many of the components of PIV-I policies and processes, such as strong identity-vetting procedures, public key infrastructure and smart cards, are already being used by numerous states and jurisdictions. It isn’t a big leap for these organizations to embrace the PIV-I framework,” said Randy Vanderhoof, executive director of the Smart Card Alliance. “Moving from issuing multiple credentials for a variety of state programs to issuing a single, multipurpose, trusted PIV-I credential can greatly improve efficiency and enhance citizen privacy for state and local governments.”

To provide states, local jurisdictions, and commercial organizations with applicable standards and guidance for PIV-I, the federal government has published two papers: “Personal Identity Verification Interoperability (PIV-I) for Non-Federal Issuers” (issued by the Federal CIO Council in May 2009) and “PIV-I Frequently Asked Questions.” The Smart Card Alliance whitepaper takes a specific look at how state and local governments can leverage the PIV-I framework, providing a concise overview of:

  • The policies, processes and technologies available to achieve interoperability;
  • The value of a single multi-purpose credential, including cost, security and privacy benefits;
  • Examples of state programs that are suitable candidates for considering a move to an interoperable identity credential; and
  • Future considerations for technology migration.

  • “NASCIO sees this whitepaper as very helpful to our Digital ID Work Group, our state CIOs and state members as they develop strategies for their identity credentialing efforts,” said Chad Grant, NASCIO policy analyst. “We agree with the Smart Card Alliance that education will be essential as state and local governments move ahead with these efforts, and look forward to helping develop and deliver further resources about PIV-I.” NASCIO and the Smart Card Alliance will be hosting a Web seminar in mid-March to present topics from the whitepaper and engage in active discussion of how the PIV-I framework can be used by states for their identity credentialing initiatives.

    Smart Card Alliance Council participants involved in the development of this whitepaper included: Accenture LLP; AMAG Technology; CardLogix; CertiPath; Datacard Group; Datawatch; Diebold Security; Gemalto; Hewlett-Packard; HID Global; Hirsch Electronics; IDenticard; Identification Technology Partners: IDmachines; Intellisoft, Inc.; L-1 Identity Solutions; NagraID Security; NASA; Northrop Grumman Corporation; Organization Change Future Workplace, LLC (OCFW); Probaris, Inc.; Roehr Consulting; SCM Microsystems; Software House / Tyco; Technica; U.S. Dept. of Defense/Defense Manpower Data Center (DMDC); U.S. Dept. of State; XTec, Inc.

    Featured

    • Maximizing Your Security Budget This Year

      Perimeter Security Standards for Multi-Site Businesses

      When you run or own a business that has multiple locations, it is important to set clear perimeter security standards. By doing this, it allows you to assess and mitigate any potential threats or risks at each site or location efficiently and effectively. Read Now

    • Survey: 72% of CISOs Are Concerned Generative AI Solutions Could Result In Security Breach

      Metomic recently released its “2024 CISO Survey: Insights from the Security Leaders Keeping Critical Business Data Safe.” Metomic surveyed more than 400 Chief Information Security Officers (CISOs) from the U.S. and UK to gain deeper insights on the state of data security. The report includes survey findings on various cybersecurity issues, including security leaders’ top priorities and challenges, SaaS app usage across their organization, and biggest concerns with implementing generative AI solutions. Read Now

    • New Research Shows a Continuing Increase in Ransomware Victims

      GuidePoint Security recently announced the release of GuidePoint Research and Intelligence Team’s (GRIT) Q1 2024 Ransomware Report. In addition to revealing a nearly 20% year-over-year increase in the number of ransomware victims, the GRIT Q1 2024 Ransomware Report observes major shifts in the behavioral patterns of ransomware groups following law enforcement activity – including the continued targeting of previously “off-limits” organizations and industries, such as emergency hospitals. Read Now

    • OpenAI's GPT-4 Is Capable of Autonomously Exploiting Zero-Day Vulnerabilities

      According to a new study from four computer scientists at the University of Illinois Urbana-Champaign, OpenAI’s paid chatbot, GPT-4, is capable of autonomously exploiting zero-day vulnerabilities without any human assistance. Read Now

    Featured Cybersecurity

    Webinars

    New Products

    • A8V MIND

      A8V MIND

      Hexagon’s Geosystems presents a portable version of its Accur8vision detection system. A rugged all-in-one solution, the A8V MIND (Mobile Intrusion Detection) is designed to provide flexible protection of critical outdoor infrastructure and objects. Hexagon’s Accur8vision is a volumetric detection system that employs LiDAR technology to safeguard entire areas. Whenever it detects movement in a specified zone, it automatically differentiates a threat from a nonthreat, and immediately notifies security staff if necessary. Person detection is carried out within a radius of 80 meters from this device. Connected remotely via a portable computer device, it enables remote surveillance and does not depend on security staff patrolling the area. 3

    • FEP GameChanger

      FEP GameChanger

      Paige Datacom Solutions Introduces Important and Innovative Cabling Products GameChanger Cable, a proven and patented solution that significantly exceeds the reach of traditional category cable will now have a FEP/FEP construction. 3

    • Unified VMS

      AxxonSoft introduces version 2.0 of the Axxon One VMS. The new release features integrations with various physical security systems, making Axxon One a unified VMS. Other enhancements include new AI video analytics and intelligent search functions, hardened cybersecurity, usability and performance improvements, and expanded cloud capabilities 3