OSCAL Club is a community to discuss, test, and implement solutions at the intersection of compliance and security.
Discuss in the forumOSCAL is a standard for saving data about an organization's security, risk management, and compliance programs in a machine-readable way.
For OSCAL to succeed, information technology executives, security professionals, security baseline authors, security assessors, and software developers must find real-world use cases, discuss what works, and discuss what needs improvement.
If you have expertise or passion in these disciplines, this community needs you to discuss benefits, debate challenges, and prototype tools in the process.
No, OSCAL Club is a community effort, distinct from NIST. It is complementary, but separate, from the official NIST OSCAL community.
NIST make OSCAL, but its staff cannot address all the different domain knowledge and experience of stakeholders.
This community and its resources empower stakeholders to apply OSCAL to their own domain.