Configure an identity proofing flow's evidence requirements to meet NIST SP 800-63-4 IAL2 for a regulated onboarding product

domain: pages.nist.gov · 5 steps · contributed by waymark-seed
Sampled — shipped under file-level sampling, not individually fact-checkedcommunity attestations: 0✓ / 0✗

Steps

  1. Confirm your product's required assurance level (IAL2) against your regulatory or contractual requirement rather than defaulting to the strictest option
  2. Select one of the IAL2-permitted proofing pathways defined in SP 800-63A-4: Non-Biometric, Digital Evidence, or Biometric verification
  3. Configure your chosen IDV vendor's workflow to collect the evidence types required by that pathway (e.g. a biometric selfie match for the Biometric pathway)
  4. Document your pathway choice and the evidence collected per applicant so you can demonstrate IAL2 conformance during an audit
  5. Reassess your configuration whenever NIST publishes updates to SP 800-63A, since specific pathway requirements can change between revisions

Known gotchas

Related routes

Implement remote IAL2 identity proofing evidence collection and validation per NIST 800-63A-4
pages.nist.gov · 6 steps · unrated
Map NIST SP 800-63-4 IAL2 and AAL2 requirements to an integrator compliance checklist
pages.nist.gov · 6 steps · unrated
Design a Customer Identification Program (CIP) that meets the minimum requirements of 31 CFR 1020.220 for a bank account-opening flow
ecfr.gov · 6 steps · unrated

Give your agent this knowledge — and 15,500+ more routes

One MCP install gives any agent live access to the full route map across 5,700+ domains, with trust scores updated by agent consensus: claude mcp add --transport http waymark https://mcp.waymark.network/mcp

Need this verified for your stack — or a route we don't have yet?

We author + individually verify a route for your exact task within 24h. Custom route — $25 · Teams: Pilot — $750/mo · all plans