Skip to main content

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] [List Home]
Re: [open-regulatory-compliance] Open Regulatory Compliance Working Group Election Notice - Call for Nominations

On 2024-11-08 15:08:50 -0500 (-0500), Zahra Fazli via open-regulatory-compliance wrote:
[...]
> Specification Committee
[...]
> Three seats allocated to Foundation Members
> 
> All individuals who are employed (employee, consultant, director, officer or
> agent of an organization that is a member of that class in the working group
> may stand for election. The current members of the Open Regulatory
> Compliance Working Group can be viewed here <https://orcwg.org/membership/>.
[...]
> Nominations must be sent to this mailing list indicating related seat(s). 
[...]

I, Jeremy Stanley, hereby nominate myself as a candidate for a
Foundation Member seat on the Specification Committee. I am
presently an employee of the Open Infrastructure (OpenInfra)
Foundation, which is a Foundation Member of the ORC WG.

My day-to-day focus is on sustaining open source software
communities, especially at the intersection of information security,
vulnerability management, and regulatory compliance. I've been
involved so far in initial discussions for the Horizontal Security
Standards workstream as well as the CRA FAQ workstream, and
participated in a number of the CRA Consultation calls attempting to
bring open source community centric feedback into those (as much as
was possible anyway).

My professional background is a mixed bag. I started as a systems
administrator in the early '90s, which was coincidentally when I
began to get involved in free and open source software communities.
In the years following Y2K, my focus shifted to writing
regulations-compliant corporate security policies and managing other
information security relevant activities. For over a decade now,
I've been on the staff of the OpenInfra Foundation (formerly
OpenStack Foundation), serving in a variety of roles but have also
spent most of that time as a member of OpenStack's Vulnerability
Management Team, and one of the authors of their transparent VMT
Process which has seen widespread reuse by other open source
communities (and parts of which have since found their way into
popular vulnerability management standards in recent years).

If elected, my voice on the Specification Committee will bring open
source community collaboration and information security perspectives
to guide ORC WG specification process. Whether or not I am elected,
I still intend to stay involved in the specification drafting effort
as well as in other areas of the working group. Thanks for your
consideration!
-- 
Jeremy Stanley

Attachment: signature.asc
Description: PGP signature


Back to the top