Program Update ICANN Contractual Compliance

Similar documents
ICANN Designated Agent for Registrar Data Escrow Services

I hope this information is helpful. Please let us know if you have any questions or concerns. Sincerely,

Re: NGPC Consideration of GAC Category 1 and Category 2 Safeguard Advice

gtld Marketplace Health Index (Beta)

EBERO Exercises. Francisco Arias. ICANN 60 Tech Day 30 October 2017

The Quickly Changing Domain Name Environment: Upcoming gtlds, Domain Name Disputes, and Trademark Protection in the New Regime

gtld Marketplace Health Index (Beta)

Privacy and Proxy Services Accreditation IRT ICANN57 Working Meeting. 9 November 2016

Draft Procedure for Community gtld Change Requests January 2018

Domain Name Marketplace Indicators:

New Generic Top-Level Domains: Trademark Protection, Malicious Conduct Mitigation. WIPO 12 October 2009

Speaker Responses to Questions from INTA Webcast Overview of New gtlds: The Application Period

.Brand TLD Desienatjon Application

Competition, Consumer Trust and Consumer Choice (CCT) Metrics Reporting

New gtld Basics. Karla Valente June 22, 2010

ICANN Critical Internet Infrastructure. Albert Daniels Internet Week Guyana 11 th October 2017

ICANN Complaints Office Semi-Annual Report

New gtld Applicant Update Webinar 23 October 2013 Additional Questions & Answers

QUALITY COMMITTEE. Terms of Reference

Project Overview for the Technical Compliance Monitoring System

Trademark Clearinghouse Implementation Update. 17 October 2012

PRIVACY MANAGEMENT FRAMEWORK

Trademark Clearinghouse Rights Protection Mechanism Requirements Frequently Asked Questions (Updated 9 April 2014)

How To Respond To ICANN's New GTLDs

.Brand TLD Designation Application

President and CEO s Report 9 June 2011

New gtld Program Update!!

Top Level protections of Exact Match, Acronym Scope 2 identifiers of the Red Cross Red Crescent Movement are

Standing Committee on the Law of Trademarks, Industrial Designs and Geographical Indications

Expressions of Interest Working Group

The DOMAIN NAME INDUSTRY BRIEF VOLUME 8 - ISSUE 4 - DECEMBER 2011

.YAHOO TLD Domain Name Registration Policy

SPECIFICATION 13.BRAND TLD PROVISIONS

THE INTERNATIONAL CENTRE FOR EXPERTISE OF THE INTERNATIONAL CHAMBER OF COMMERCE. CASE No. EXP/434/ICANN/51 WORLD GOLD COUNCIL (SWITZERLAND) vs/

Navigating the Domain Namespace Explosion. IGLTA Global Convention Chicago 2013

CLINICAL GOVERNANCE AND QUALITY COMMITTEE. Final - Terms of Reference - Final

A Conversation with ICANN s Complaints Officer

GAC Early Warning Submittal Africa- BJ

INTERNET USERS & INTERNET GOVERNANCE Prospective of AP Regional Internet Users Organization

ICANN gtld Registry Failover Project

NetworkNotes. U.S. Behavioral Health Plan, California (USBHPC) News for Clinicians and Facilities Fall 2009

New gtld Program Update!!

New gtlds, New Challenges

DNS Study for the Middle East and Adjoining Countries. Overview Dublin, 20 October 2015

Sample CHO Primary Care Division Quality and Safety Committee. Terms of Reference

JAS WG Final Report Supporting Applicants from Developing Economies. September 2011 Presenters: Avri Doria; Alan Greenberg

ALLOCATION OF RESOURCES POLICY FOR CONTINUING HEALTHCARE FUNDED INDIVIDUALS

Annual Complaints Report 2014/15

Information System Security

DODEA ADMINISTRATIVE INSTRUCTION DODEA NOTIFICATION SYSTEM PROGRAM

Health Center Staff Documents Checklist

IAF Guidance on the Application of ISO/IEC Guide 61:1996

New gtld Program. Community Priority Evaluation Result. Report Date: 10 February 2016

Uniform Guidance and Internal Controls: A Case Study

Safety & Health Program Management Guidelines. Heinz Wendorff Compliance Assistance Specialist Department of Labor OSHA Manhattan Area Office

Presentation to the Helicopter Offshore Safety Inquiry

Trust Board Meeting: Wednesday 13 May 2015 TB

Uniform Guidance Subpart D Administrative Requirements

.Brand TLD Designation Application

Fellowship Slide Deck

What to do When Faced With a Privacy Breach: Guidelines for the Health Sector. ANN CAVOUKIAN, Ph.D. COMMISSIONER

Home Health Value-Based Purchasing Series: HHVBP Model 101. Wednesday, February 3, 2016

DEPARTMENT OF HUMAN SERVICES AGING AND PEOPLE WITH DISABILITIES OREGON ADMINISTRATIVE RULES CHAPTER 411 DIVISION 069 LONG TERM CARE ASSESSMENT

2016 Nominating Committee. ICANN55 9 March 2016

Report of Public Comments

Independent Review of the ICANN At-Large Community - Draft Report for Public Comment Public Comment Input Template

Outsourcing Guidelines. for Financial Institutions DRAFT (FOR CONSULTATION)

Army Needs to Improve Contract Oversight for the Logistics Civil Augmentation Program s Task Orders

Accountability Framework and Organizational Requirements

Frank Fowlie. Office of the Ombudsman. Remarks at Marrakesh Public Forum. June 28, Check against delivery

ED0028 Adverse event, critical incident, serious issue, and near miss procedure

A Case Review Process for NHS Trusts and Foundation Trusts

Appendix 1 MORTALITY GOVERNANCE POLICY

ICANN. ICANN Africa Strategic Plan. July 2016 June Version 2.0

REPORT 2015/056 INTERNAL AUDIT DIVISION. Audit of the conduct and discipline function in the United Nations Interim Force in Lebanon

Certificate of Compliance

MEMORANDUM OF UNDERSTANDING THE CHARITY COMMISSION FOR NORTHERN IRELAND AND THE FUNDRAISING REGULATOR

Review of Terms of Reference of Quality Assurance Committee

National VET Data Policy

Healthwatch England Escalation Guidance

Presentation to GNSO Council: Draft Community gtld Change Request Process. 20 September 2017

GUIDELINES FOR CONSIDERING AND AWARDING OF GRANTS TO COMBAT ALCOHOL ABUSE AND ADDICTION

Primary Care Quality Assurance Framework (Medical Services)

CLINICAL GOVERNANCE AND QUALITY COMMITTEE Terms of Reference

Quality Improvement Program Evaluation

Stockport All Agency Safeguarding Adult Review (SAR) Protocol

Salford Standard Support & Escalation Process

HPV Health Purchasing Policy 1. Procurement Governance

Health Care Reform (Affordable Care Act) Leadership Summit April 26, 2010 Cindy Graunke

Hi Akram, Cyrus and Xavier,

RE: Application for.brand TLD Designation

OFFICE OF CHILDREN AND FAMILY SERVICES NEW YORK CITY DAY CARE COMPLAINTS. Report 2005-S-40 OFFICE OF THE NEW YORK STATE COMPTROLLER

Critical Incidents Service Provider Requirements Guide

GRANT AND FUNDING STRUCTURE

Farm Data Code of Practice Version 1.1. For organisations involved in collecting, storing, and sharing primary production data in New Zealand

Trauma Center Pre-Review Questionnaire Notes Title 22

CLINICAL AND CARE GOVERNANCE STRATEGY

Okla. Admin. Code 340: : Purpose. Okla. Admin. Code 340: : Definitions [REVOKED] Okla. Admin.

AAHRPP Accreditation Procedures Approved April 22, Copyright AAHRPP. All rights reserved.

10/28/2011. Important Accreditation Facts: New Program Categories, Accreditation Awards, Commendations and the OAA

Transcription:

1

Program Update ICANN Contractual Compliance ICANN 61 14 March 2018 2

Agenda Brief Update Since ICANN 60 Performance Measurement & Reporting Update Registrar Compliance Update Registry Compliance Update Contractual Compliance Audit Update Questions & Answers Appendix for your reference Policy Update Additional Audit Slides 3

Performance Measurement & Reporting Update 4

Enhancing Transparency in Reporting Enhanced Monthly Reporting Additional metrics on complaints related to the Governmental Advisory Committee (GAC) Category 1 Safeguards and Complaint Type: GAC Category 1 Safeguards categories: Children, Environmental, Health and Fitness, Financial, Charity, Education, Intellectual Property, Professional Services, Corporate Identifiers, Generic Geographic Terms, Health and Fitness, Gambling, Charity, Education, Professional Services, Corporate Identifiers, Bullying/Harassment and Governmental Functions Monthly dashboards and Learn More on additional metrics published at https://features.icann.org/compliance/dashboard/report-list 5

Enhancing Transparency in Reporting (cont d) New Quarterly Reporting Registrar Closed Complaints by Closure Code and Registry Closed Complaints by Closure Code have been added beginning with 2017 Quarter Four Reports include closed complaints grouped by: Resolved = the reporter's complaint has been resolved or the contracted party has reviewed the complaint, responded to ICANN and/or demonstrated compliance Out of Scope = the complaint cannot be addressed by ICANN because it is invalid or out of scope of ICANN's agreements/policies; or does not meet the minimum threshold for processing ICANN Issue = the complaint should not have been sent to contracted party due to ICANN error; or internal ICANN process needs to be completed before the Compliance process can continue A fourth category - Other - represents complaints previously closed which have been reopened and are currently active Reports are published at https://features.icann.org/compliance/dashboard/report-list 6

Registrar Compliance Update 7

RAA Compliance Update Lessons Learned 1 Protection of IGO/INGO Identifiers in All gtlds Policy Implementation of New Consensus Policy 2 Transfer Policy: Change of Registrant Lock Applying change of registrant lock only when applicable 3 Abuse Report Handling Complying with requirement to investigate and respond appropriately to abuse reports 4 Registrar Data Escrow Obligations Complying with the required Terms, Format and Schedule 8

Registry Compliance Update 9

RA Compliance Update Lessons Learned 1 Protection of IGO/INGO Identifiers in All gtlds Policy Implementation of New Consensus Policy 2 Specification 11, Section 3b Security Threat Technical Analysis and Reporting Common Practices Common practices by Registry Operators regarding identification of and reporting of security threats, as observed by ICANN 3 ICANN Approval Prior to Implementation Complying with requirements for notification to and approval by ICANN of new or changed services, changes of control or MSA prior to implementation 10

Contractual Compliance Audit Update Registrar Audit Registry Audit Registrar Data Escrow Proactive Monitoring 11

Audit Program Update ICANN typically conducts two audits each year for both Registrars and Registry Operators Since ICANN 60 September 2017 Registry Operator audit was completed in February 2018 Registrar audit launched in September 2017 is in progress New Registry Operator audit launched in March 2018 Next Registrar audit round is targeted to begin in April 2018 ICANN pre-audit notifications will be sent to auditees only Continuous improvements include review and updates to request for information and audit metrics/report webpage 12

Registrar Audit Update Registrar Accreditation Agreement Audit since ICANN 60 September 2017 audit: In progress remediation phase Initial Reports sent February 2018 59 Registrars from 21 countries 26 Registrars subject to full audit 33 Registrars subject to limited audit to verify remediation of previously noted deficiencies As of 28 February 2018, 15 Registrars received Final Reports: 13 Registrars received final fully remediated reports 2 Registrars received final partially remediated reports These registrars will be retested in future audit Next audit round targeted to begin April 2018. 13

Registry Operator Audit Update Registry Agreement Audit since ICANN 60 September 2017 audit: Completed February 2018; report being finalized for publication 8 Registry Operators from 3 countries, covering 10 top-level domains Included top-level domains subject to Category 1 safeguards (i.e., consumer protection, sensitive strings, and regulated markets) Reports sent January - March 2018: 4 Registry Operators, covering 5 top-level domains received reports without findings 5 Registry Operators, covering 5 top-level domains received final partially remediated reports These registry operators will be retested in future audit March 2018 audit: In progress request for information phase 5 Registry Operators from 4 countries, covering 20 top-level domains Includes top-level domains not subject to prior audit 14

Registrar Data Escrow Proactive Monitoring Data Escrow Agent conducts manual review of deposits as requested by ICANN in cases where: Registrar receives 3rd or Escalated Notice (potential for breach/termination that requires bulk transfer of domains) Number of domains escrowed differs from number of domains under Registrar s management, as reported by Registry Operator Since ICANN 60, more than 86 data escrow reviews requested and performed by Iron Mountain ICANN works with other data escrow agents approved by ICANN as needed to perform similar manual reviews. Contractual Compliance is actively participating in the Designated Agent for Registrar Data Escrow Services Request for Proposal process https://www.icann.org/news/announcement-2-2017-08-17-en 15

Questions & Answers Send compliance questions To: compliance@icann.org Subject line: ICANN 61 Program Update Session The ICANN 61 presentations are available at: - The ICANN Contractual Compliance outreach page at this link https://www.icann.org/resources/compliance/outreach - The ICANN 61 Schedule page at this link https://schedule.icann.org/ 16

Appendix Policy Efforts Additional Audit Slides 17

Policy Efforts 18

Policy and Working Group Efforts - Registrar Actively contributing to Registrar-related policies, Working Groups and Implementation Review Teams Translation and Transliteration of Contact Information Privacy and Proxy Services Accreditation Issues Thick WHOIS & Registration Data Access Protocol (RDAP) Security, Stability and Resiliency Review Team WHOIS Review Team Internationalized Domain Name guidelines 19

Policy and Working Group Efforts Registry Actively contributing to Registry-related policies, Working Groups and Implementation Review Teams Competition, Trust and Choice Review Rights Protection Mechanism Review New gtld Subsequent Procedures Thick WHOIS & Registration Data Access Protocol (RDAP) RDAP Pilot information at https://community.icann.org/display/rp/rdap+pilot Security, Stability and Resiliency Review Team Internationalized Domain Name guidelines 20

Additional Audit 21

Contractual Compliance Audit Phases Pre Audit Notification Request for Information (RFI) Audit Phase Report Phase Remediation Phase Final Report Ø Pre-Audit Notification is sent to contracted parties in scope of audit round (auditees) informing them about upcoming audit, audit start date and scope of audit. Ø Request for Information Notification is sent to auditees and includes list of required documents. Negative confirmations sent to all contracted parties not under audit. Ø Audit Phase: Documentation and data are collected and reviewed by ICANN audit team. Ø Report Phase: Audit reports are issued by ICANN audit team and sent to each auditee. Ø Remediation Phase: Auditees that received reports with initial finding(s) work and collaborate with ICANN audit team to address finding(s). Ø Final Report: Final audit reports are issued upon completion of audit and successful remediation of any noted deficiencies. 22

Contractual Compliance Audit Program Materials https://www.icann.org/resources/pages/audits-2012-02-25-en Registry / Registrar audit plans Audit Communication Templates Audit Program Frequently Asked Questions Audit Outreach sessions by calendar year Audit Reports by calendar year Past Audit Program plans 23