{
  "schemaVersion": "artifactExample.v2",
  "artifactId": "IRAR",
  "title": "ISMS Role Appointment Record",
  "definitionRef": {
    "artifactId": "IRAR",
    "definitionSchemaVersion": "artifactDefinition.v2",
    "definitionId": "IRAR.artifactDefinition.v2",
    "title": "ISMS Role Appointment Record"
  },
  "organization": "Arcfield",
  "sections": [
    {
      "id": "title_page",
      "title": "Title Page",
      "values": {
        "Document Title": "ISMS Role Appointment Record",
        "Document ID": "IRAR-DOC-001",
        "Version": "1.1",
        "Status": "Approved",
        "Organization": "Arcfield",
        "Owner": "ISMS Manager",
        "Approver": "Top Management",
        "Classification": "Internal",
        "Effective Date": "2026-09-11",
        "Next Review Date": "2027-09-11"
      },
      "items": [
        "Document Title: ISMS Role Appointment Record",
        "Document ID: IRAR-DOC-001",
        "Version: 1.1",
        "Status: Approved",
        "Organization: Arcfield",
        "Owner: ISMS Manager",
        "Approver: Top Management",
        "Classification: Internal",
        "Effective Date: 2026-09-11",
        "Next Review Date: 2027-09-11"
      ],
      "contentType": "metadata"
    },
    {
      "id": "abstract",
      "title": "Abstract",
      "text": "The ISMS Role Appointment Record provides a controlled, implementation-ready way to provide explicit evidence that ISMS roles and authorities have been assigned and accepted. It connects accountable work to source-system evidence, review decisions and follow-up actions so that the artifact can support both day-to-day operation and audit sampling. Rows are the 11 September 2026 operating sample of the certified Arcfield Platform ISMS in the surveillance cycle after certificate ARC-ISMS-2025-001.",
      "contentType": "narrative"
    },
    {
      "id": "document_control",
      "title": "Document Control",
      "rows": [
        {
          "Property": "Purpose",
          "Value": "Provide explicit evidence that ISMS roles and authorities have been assigned and accepted."
        },
        {
          "Property": "Used by",
          "Value": "Top Management, ISMS Manager, HR Manager"
        },
        {
          "Property": "Maintained by",
          "Value": "ISMS Manager"
        },
        {
          "Property": "Evidence role",
          "Value": "audit evidence"
        },
        {
          "Property": "ISO reference",
          "Value": "ISO/IEC 27001:2022 clause 5.3"
        },
        {
          "Property": "Review cadence",
          "Value": "When establishing the ISMS, changing personnel, or reallocating responsibilities."
        }
      ],
      "contentType": "control_table"
    },
    {
      "id": "instructions",
      "title": "Instructions",
      "items": [
        "Keep one row per key ISMS role. Do not merge several appointees into one row.",
        "Record role, appointee, scope, responsibilities, authority, competence, effective date, approver, acceptance evidence and review date.",
        "Review the register after organizational changes, joiners, movers and leavers.",
        "Link acceptance to a signed or exportable source record.",
        "Use sheets ending in “Ex” as read-only examples. Enter live data only on the matching “Wk” (Working) sheets.",
        "Every operative list is an Excel Table with frozen headers and filters. Add new rows on the next empty worksheet row beneath the table so Excel expands it — do not leave blank rows inside the table.",
        "Where a column offers a dropdown, choose a value from the list. Do not invent free-text variants.",
        "Enter dates as YYYY-MM-DD. Date columns are validated and formatted accordingly.",
        "Keep Cover, Legal, Book, Lists and Metadata unchanged. System sheets are protected on purpose."
      ],
      "contentType": "ordered_list"
    },
    {
      "id": "isms_role_appointment_register",
      "title": "ISMS role appointment register",
      "rows": [
        {
          "Appointment ID": "IRAR-001",
          "Role": "Defined and evidenced",
          "Appointee": "Defined and evidenced",
          "Scope": "Arcfield SaaS production service",
          "Responsibilities": "Defined and evidenced",
          "Authority": "Defined and evidenced",
          "Competence requirement": "Production access review",
          "Effective date": "2026-08-29",
          "Approver": "Top Management",
          "Acceptance evidence": "JIRA-SEC-2026-014",
          "Review date": "2026-08-29",
          "Status": "Complete"
        },
        {
          "Appointment ID": "IRAR-002",
          "Role": "Reviewed by accountable owner",
          "Appointee": "Reviewed by accountable owner",
          "Scope": "EU customer operations",
          "Responsibilities": "Reviewed by accountable owner",
          "Authority": "Reviewed by accountable owner",
          "Competence requirement": "Security evidence validation",
          "Effective date": "2026-09-30",
          "Approver": "ISMS Manager",
          "Acceptance evidence": "GRC-EVID-2026-Q3",
          "Review date": "2026-09-30",
          "Status": "In progress"
        },
        {
          "Appointment ID": "IRAR-003",
          "Role": "See linked source record",
          "Appointee": "See linked source record",
          "Scope": "Head office and cloud services",
          "Responsibilities": "See linked source record",
          "Authority": "See linked source record",
          "Competence requirement": "Quarterly control review",
          "Effective date": "2026-11-29",
          "Approver": "Security Lead",
          "Acceptance evidence": "REVIEW-2026-Q3",
          "Review date": "2026-11-29",
          "Status": "Pending review"
        },
        {
          "Appointment ID": "IRAR-004",
          "Role": "Approved with follow-up",
          "Appointee": "Approved with follow-up",
          "Scope": "Arcfield SaaS production service",
          "Responsibilities": "Approved with follow-up",
          "Authority": "Approved with follow-up",
          "Competence requirement": "Supplier control verification",
          "Effective date": "2026-08-29",
          "Approver": "Top Management",
          "Acceptance evidence": "JIRA-SEC-2026-014",
          "Review date": "2026-08-29",
          "Status": "Complete"
        },
        {
          "Appointment ID": "IRAR-005",
          "Role": "Pending independent review",
          "Appointee": "Pending independent review",
          "Scope": "EU customer operations",
          "Responsibilities": "Pending independent review",
          "Authority": "Pending independent review",
          "Competence requirement": "Release security approval",
          "Effective date": "2026-09-30",
          "Approver": "ISMS Manager",
          "Acceptance evidence": "GRC-EVID-2026-Q3",
          "Review date": "2026-09-30",
          "Status": "In progress"
        }
      ],
      "schemaRef": {
        "definitionId": "IRAR.artifactDefinition.v2",
        "sectionId": "isms_role_appointment_register",
        "columnsRef": "sections.isms_role_appointment_register.columns"
      },
      "contentType": "register_table"
    },
    {
      "id": "external_references",
      "title": "References",
      "groups": [
        {
          "text": "Cite these sources from workshops and audits. This list names ISO clauses, book chapters and companion artifacts used by this file."
        },
        {
          "rows": [
            {
              "Kind": "ISO",
              "Reference": "ISO/IEC 27001:2022 5.3",
              "How this document uses it": "Normative source this artifact implements or cites.",
              "href": "https://www.iso.org/standard/82875.html"
            },
            {
              "Kind": "Book",
              "Reference": "Building the ISMS, Context of the Organization (Clause 4)",
              "How this document uses it": "Primary operating chapter for this companion artifact.",
              "href": "https://www.amazon.com/dp/9789908983448"
            },
            {
              "Kind": "Artifact",
              "Reference": "ISO Information Security Objectives (Building the ISMS, Information Security Policies & Risk Management)",
              "How this document uses it": "Interface record. Cite this Document Control version; do not copy this file into that record.",
              "href": "https://www.amazon.com/dp/9789908983448"
            }
          ]
        }
      ],
      "contentType": "reference_table"
    }
  ],
  "generation": {
    "source": "Example.json",
    "method": "curated-json",
    "note": "Completes Example JSON with renderer-native sections and generalized groups; no mdSource helper fields."
  },
  "snapshotRef": {
    "snapshotId": "arcfield.platform.surv.2026-09-11",
    "schemaVersion": "evidenceSnapshot.v1"
  },
  "scenarioRef": {
    "githubIssue": 64,
    "crId": "CR-TYPE-ARCFIELD-001",
    "family": "Register",
    "role": "Operating sample of the 11 September 2026 freeze"
  }
}
