This shows you the differences between two versions of the page.
| Both sides previous revision Previous revision Next revision | Previous revision | ||
|
cbdc:public:cbdc_omg:04_doc:20_comments:brp:q11:start [2022/04/24 15:36] nick [7. Risk of Business Processes Being Hacked] |
cbdc:public:cbdc_omg:04_doc:20_comments:brp:q11:start [2022/06/17 18:59] (current) terrance |
||
|---|---|---|---|
| Line 1: | Line 1: | ||
| - | ====== Question: 11. TBD Are there additional ways to manage potential risks associated with CBDC that were not raised in this paper? ====== | + | ====== Question: 11. Are there additional ways to manage potential risks associated with CBDC that were not raised in this paper? ====== |
| - | [[cbdc:private:cbdc_omg:04_doc:20_comments:brp:start| Return to CBDC Benefits, Risks, and Policy Considerations ]] | + | |< 100% >| |
| + | | [[cbdc:public:cbdc_omg:04_doc:20_comments:brp:start| Return to CBDC Benefits, Risks, and Policy Considerations ]] | <WRAP> | ||
| + | <html><b> | ||
| + | <a href="mailto:[email protected]?Subject=OMG's CBDC WG Response: | ||
| + | Question: 11. Are there additional ways to manage potential risks associated with CBDC that were not raised in this paper? | ||
| + | ">Provide Feedback</a></b> | ||
| + | </html> | ||
| + | </WRAP> | | ||
| ===== Question ===== | ===== Question ===== | ||
| - | [[cbdc:private:cbdc_omg:04_doc:20_comments:brp:q11:start| Return to Top]] | + | [[cbdc:public:cbdc_omg:04_doc:20_comments:brp:q11:start| Return to Top]] |
| **Are there additional ways to manage potential risks associated with CBDC that were not raised in this paper?** | **Are there additional ways to manage potential risks associated with CBDC that were not raised in this paper?** | ||
| ===== Answer ===== | ===== Answer ===== | ||
| - | [[cbdc:private:cbdc_omg:04_doc:20_comments:brp:q11:start| Return to Top]] | + | [[cbdc:public:cbdc_omg:04_doc:20_comments:brp:q11:start| Return to Top]] |
| By all descriptions, the U.S. CBDC is primarily a large [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:xapend:xapend.a_glossary:s:sos | System-of-Systems (SoS)]] or even an SoS of SoSs. Some of these would ideally already exist and some will need to be created. The new systems are predominately a [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:xapend:xapend.a_glossary:s:software | Software (SW)]] effort. Yes, there will be some specialized [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:xapend:xapend.a_glossary:h:hardware | Hardware(HW) ]] required, but the primary focus appears to be Software (including [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:xapend:xapend.a_glossary:c:cots | Commercial-Off-The-Shelf (COTS)]], [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:xapend:xapend.a_glossary:g:gots | Government Off-The-Shelf (GOTS)]], or [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:xapend:xapend.a_glossary:m:mots | Modified Off-The-Shelf (MOTS)]]. This software will ultimately need to be [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:1.4_req:2_nonfunc:28_manageability:04_costs | Managed ]] and [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:1.4_req:2_nonfunc:20_maintainability:modifiability | Modified]]. | By all descriptions, the U.S. CBDC is primarily a large [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:xapend:xapend.a_glossary:s:sos | System-of-Systems (SoS)]] or even an SoS of SoSs. Some of these would ideally already exist and some will need to be created. The new systems are predominately a [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:xapend:xapend.a_glossary:s:software | Software (SW)]] effort. Yes, there will be some specialized [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:xapend:xapend.a_glossary:h:hardware | Hardware(HW) ]] required, but the primary focus appears to be Software (including [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:xapend:xapend.a_glossary:c:cots | Commercial-Off-The-Shelf (COTS)]], [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:xapend:xapend.a_glossary:g:gots | Government Off-The-Shelf (GOTS)]], or [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:xapend:xapend.a_glossary:m:mots | Modified Off-The-Shelf (MOTS)]]. This software will ultimately need to be [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:1.4_req:2_nonfunc:28_manageability:04_costs | Managed ]] and [[https://www.omgwiki.org/dido/doku.php?id=dido:public:ra:1.4_req:2_nonfunc:20_maintainability:modifiability | Modified]]. | ||
| + | |||
| + | The following is a list of potential risks not identified in the **White Paper**. | ||
| <nspages -tree -r -exclude -subns -pagesInNs -h1 -textNs=""> | <nspages -tree -r -exclude -subns -pagesInNs -h1 -textNs=""> | ||
| - | |||
| - | ==== 1. Risk of a Software Crisis ==== | ||
| - | [[cbdc:private:cbdc_omg:04_doc:20_comments:brp:q11:start| Return to Top]] | ||
| - | |||
| - | |||
| - | ==== 2. Risk of Lack of Stakeholder Buy-In ===== | ||
| - | [[cbdc:private:cbdc_omg:04_doc:20_comments:brp:q11:start| Return to Top]] | ||
| - | |||
| - | |||
| - | |||
| - | ==== 3. Risk due to Poor Community of Interest (CoI) Governance ==== | ||
| - | [[cbdc:private:cbdc_omg:04_doc:20_comments:brp:q11:start| Return to Top]] | ||
| - | |||
| - | |||
| - | ==== 4. Risk due to lack of Broad, Wide Ranging Security Planning ==== | ||
| - | [[cbdc:private:cbdc_omg:04_doc:20_comments:brp:q11:start| Return to Top]] | ||
| - | |||
| - | |||
| - | ==== 5. Risk of Data being hacked due weak Security Infrasture ==== | ||
| - | [[cbdc:private:cbdc_omg:04_doc:20_comments:brp:q11:start| Return to Top]] | ||
| - | |||
| - | |||
| - | ==== 6. Risk of Meta-Data being hacked due weak Security Infrasture ==== | ||
| - | [[cbdc:private:cbdc_omg:04_doc:20_comments:brp:q11:start| Return to Top]] | ||
| - | |||
| - | |||
| - | ==== 7. Risk of Business Processes Being Hacked ==== | ||
| - | [[cbdc:private:cbdc_omg:04_doc:20_comments:brp:q11:start| Return to Top]] | ||
| - | |||