Category Service Assessment Criteria Sets

The Service Assessment Criteria (SAC) define the requirements used to assess conformance under the Kantara Initiative International Assurance Program (KIIAP), aligned to the NIST Digital Identity Guidelines.

Before beginning your certification, you should identify which criteria set(s) apply to your service based on the type of capability you are seeking to have assessed (e.g., identity proofing, authentication, federation) and the applicable assurance level.

Each criteria set below corresponds to a specific component of the NIST framework. You may need to apply for one or multiple criteria sets depending on your service offering.

Review the options below and select the criteria set(s) that align with your certification scope. If you are unsure which criteria apply, you can contact Kantara for guidance before proceeding.

KIIAP 1401 – Identity Assurance Program: NIST SP 800-63A-4 Service Assessment Criteria (SAC) & Statement of Criteria Applicability (SoCA)

NORMATIVE This Specification sets forth KI’s Service Assessment Criteria for assessments against the requirements of NIST Special Publication 800-63A Revision 4, published in August 2025, at applicable Identity Assurance Levels, to be generally referred to as the ’63A-4_SAC’. Please fill…

KIAF 1410 – CO_SAC Kantara Identity Assurance Framework: Common Organizational Service Assessment Criteria (SAC) & Statement of Criteria Applicability (SoCA) – Excel Version

NORMATIVE This Specification sets forth KI’s Service Assessment Criteria for assessments whose scope includes the good standing of the organization which provides the service which is subject to assessment, be generally referred-to as the ‘CO_SAC’. The current version of the…