K05 assurance architecture

Workload identity compromise

Direct answer

Evaluate short-lived identity revocation, session termination, lateral-movement containment, and service continuity.

Evidence boundary. These records describe architecture, control relationships, test requirements, and legal-source status. They do not certify a facility, authorize a mission, prove deployment, or replace current facility-specific engineering and legal review.

Objective

Evaluate short-lived identity revocation, session termination, lateral-movement containment, and service continuity.

Abstract injected condition

synthetic credential replay or identity-policy violation

Required observations

  • protected-function state
  • policy decision and confidence
  • authority and configuration state
  • timing and identity health
  • incident chronology
  • rollback or safe-state result

Pass evidence

identity is revoked within target time; unaffected functions continue; decision and rollback evidence is complete

Safety envelope

  • isolated range or approved hardware-in-the-loop environment
  • no production plant or public-network target
  • synthetic or authorized data and identities
  • effects-disabled or non-damaging test substitutes
  • independent stop authority
  • complete artifact removal and reset evidence

Excluded public detail

  • exploit or payload instructions
  • credential theft procedure
  • persistence or evasion recipe
  • targeting or engagement thresholds
  • weapon construction
  • real-world unauthorized access

Assurance claims evaluated

AC-K05-C04 · AC-K05-C05

Machine-readable scenario