< Home | Return to Ballot listing

Ballot Details    TC Member Ballot View
Choosing a path forward for the STIX 2.1 release

Which path should the TC take to release STIX 2.1?

While the slate of features targeted for the STIX 2.1 release has remained relatively static, there is a substantial amount of work ahead of us. A number of deficiencies with the 2.0 specifications were identified at the Salt Lake City interop plugfest (primarily TAXII-related) and there was general consensus that new work should be required to meet a higher level of verification prior to being included in future releases of STIX and TAXII so as to minimize backward-breaking changes. After lengthy discussion within the TC, three distinct options have emerged for our way forward to the 2.1 STIX Committee Specification (CS). These break down along two axes: feature scope and verification intensity. The options are as follows:

Option #1: Full scope STIX 2.1 release, with additional validation

Option #2: Limited scope STIX 2.1 release, with no immediate additional validation - additional validation starting from STIX 2.2

Option #3: Limited scope STIX 2.1 release, including additional validation - as described in Option 1

Each of the options has a document that provides more detail about that option. Here are the links:

Option #1: https://www.oasis-open.org/apps/org/workgroup/cti/download.php/62810/Proposal%20%231.pdf

Option #2: https://www.oasis-open.org/apps/org/workgroup/cti/download.php/62811/Proposal%20%232.pdf

Option #3: https://www.oasis-open.org/apps/org/workgroup/cti/download.php/62812/Proposal%20%233.pdf

 [ ]  Option #1 - Full scope STIX 2.1 release, with additional validation
 [ ]  Option #2 - Limited scope STIX 2.1 release, with no immediate additional validation - additional validation starting from STIX 2.2
 [ ]  Option #3 - Limited scope STIX 2.1 release, including additional validation - as described in Option 1
Opening:   Tuesday, 3 April 2018 @ 06:00 pm EDT
Closing:   Tuesday, 17 April 2018 @ 06:00 pm EDT
Group:   OASIS Cyber Threat Intelligence (CTI) TC
Ballot has closed.

Voting Details

Voting Summary

Options with highest number of votes are bold

Option # Votes % of Total
Option #1 - Full scope STIX 2.1 release, with additional validation 31 66%
Option #2 - Limited scope STIX 2.1 release, with no immediate additional validation - additional validation starting from STIX 2.2 0 0%
Option #3 - Limited scope STIX 2.1 release, including additional validation - as described in Option 1 16 34%
Eligible members who have voted: 47 of 63 75%
Eligible members who have abstained: 0 of 63 0%
Eligible members who have not voted: 16 of 63 25%

Voting Details

Voter Company VoteReference Document and/or Comment
Kyle Maxwell
Accenture
--
 
Robert Coderre
Accenture
Option #3 - Limited scope STIX 2.1 release, inc...
Nicholas Hayden
Anomali
Option #1 - Full scope STIX 2.1 release, with a...
 
Dean Thompson
Australia and New Zealand Banking Group (A...
--
 
Sarah Kelley
CIS
Option #3 - Limited scope STIX 2.1 release, inc...
Jyoti Verma
Cisco Systems
--
 
Jane Ginn
Cyber Threat Intelligence Network, Inc. (C...
Option #1 - Full scope STIX 2.1 release, with a...
 
Marlon Taylor
DHS Office of Cybersecurity and Communicat...
--
 
Preston Werntz
DHS Office of Cybersecurity and Communicat...
Option #3 - Limited scope STIX 2.1 release, inc...
 
Chris Ricard
Financial Services Information Sharing and...
Option #1 - Full scope STIX 2.1 release, with a...
 
Shyamal Pandya
FireEye, Inc.
Option #3 - Limited scope STIX 2.1 release, inc...
 
Sean Barnum
FireEye, Inc.
Option #3 - Limited scope STIX 2.1 release, inc...
 
Paul Patrick
FireEye, Inc.
Option #3 - Limited scope STIX 2.1 release, inc...
Toshitaka Satomi
Fujitsu Limited
Option #1 - Full scope STIX 2.1 release, with a...
 
Ryusuke Masuoka
Fujitsu Limited
Option #3 - Limited scope STIX 2.1 release, inc...
 
Koji Yamada
Fujitsu Limited
Option #3 - Limited scope STIX 2.1 release, inc...
 
Kunihiko Yoshimura
Fujitsu Limited
Option #3 - Limited scope STIX 2.1 release, inc...
 
David Lemire
G2
--
 
Iain Brown
GDS
--
 
Kazuo Noguchi
Hitachi, Ltd.
Option #1 - Full scope STIX 2.1 release, with a...
 
Masato Terada
Hitachi, Ltd.
Option #3 - Limited scope STIX 2.1 release, inc...
 
Ron Williams
IBM
Option #1 - Full scope STIX 2.1 release, with a...
 
Jason Keirstead
IBM
Option #1 - Full scope STIX 2.1 release, with a...
 
John Morris
IBM
Option #1 - Full scope STIX 2.1 release, with a...
 
Elysa Jones
Individual
--
 
Terry MacDonald
Individual
Option #1 - Full scope STIX 2.1 release, with a...
 
Tim Casey
Intel Corporation
--
 
Beth Pumo
Kaiser Permanente
Option #1 - Full scope STIX 2.1 release, with a...
 
Gus Creedon
Logistics Management Institute
--
 
Allan Thomson
LookingGlass
Option #1 - Full scope STIX 2.1 release, with a...
 
Jamison Day
LookingGlass
Option #1 - Full scope STIX 2.1 release, with a...
 
Dennis Hostetler
LookingGlass
Option #1 - Full scope STIX 2.1 release, with a...
 
Richard Struse
Mitre Corporation
--
 
Jonathan Baker
Mitre Corporation
Option #3 - Limited scope STIX 2.1 release, inc...
 
Ivan Kirillov
Mitre Corporation
Option #3 - Limited scope STIX 2.1 release, inc...
 
Greg Back
Mitre Corporation
Option #3 - Limited scope STIX 2.1 release, inc...
 
Chris Lenk
Mitre Corporation
Option #3 - Limited scope STIX 2.1 release, inc...
 
John Wunder
Mitre Corporation
Option #3 - Limited scope STIX 2.1 release, inc...
Richard Piazza
Mitre Corporation
Option #3 - Limited scope STIX 2.1 release, inc...
Daniel Dye
NC4
--
 
John Anderson
NC4
Option #1 - Full scope STIX 2.1 release, with a...
 
Natalie Suarez
NC4
Option #1 - Full scope STIX 2.1 release, with a...
 
Michael Butt
NC4
Option #1 - Full scope STIX 2.1 release, with a...
 
Mark Davidson
NC4
Option #1 - Full scope STIX 2.1 release, with a...
 
Takahiro Kakumaru
NEC Corporation
Option #1 - Full scope STIX 2.1 release, with a...
 
Daniel Riedel
New Context Services, Inc.
Option #1 - Full scope STIX 2.1 release, with a...
 
Andrew Storms
New Context Services, Inc.
Option #1 - Full scope STIX 2.1 release, with a...
 
John-Mark Gurney
New Context Services, Inc.
Option #1 - Full scope STIX 2.1 release, with a...
 
Christian Hunt
New Context Services, Inc.
Option #1 - Full scope STIX 2.1 release, with a...
 
Trey Darley
New Context Services, Inc.
Option #1 - Full scope STIX 2.1 release, with a...
Drew Varner
NineFX, Inc.
Option #1 - Full scope STIX 2.1 release, with a...
 
Robert Van Dyk
Northrop Grumman
Option #1 - Full scope STIX 2.1 release, with a...
 
Philip Royer
Phantom
--
 
Curtis Kostrosky
Symantec Corp.
--
 
Robert Keith
Symantec Corp.
Option #1 - Full scope STIX 2.1 release, with a...
 
Aubrey Merchant
Symantec Corp.
Option #1 - Full scope STIX 2.1 release, with a...
 
Michael Mauch
Symantec Corp.
Option #1 - Full scope STIX 2.1 release, with a...
 
Bret Jordan
Symantec Corp.
Option #1 - Full scope STIX 2.1 release, with a...
Richard Shok
U.S. Bank
Option #1 - Full scope STIX 2.1 release, with a...
 
James Bohling
US Department of Defense (DoD)
--
 
Jeffrey Mates
US Department of Defense (DoD)
--
 
Gary Katz
US Department of Defense (DoD)
Option #1 - Full scope STIX 2.1 release, with a...
 
Duncan Sparrell
sFractal Consulting LLC
--