# DEFENSE-POSTURE

Layer 2 Procedural File 4 of 6 — The Dash / NornGate at SBS Maps every design decision to the exposure surface it defends.

## <a name="purpose"></a>Purpose

<span style="mso-bookmark: purpose;">The Dash is not designed for elegance; it is designed to make SBS’s posture defensible — against FCC scrutiny, SOX control-environment review, customer disputes, audit inquiry, and litigation discovery. This file maps the surfaces to the mechanisms.</span>

## <a name="the-defense-surfaces"></a>The Defense Surfaces

<table border="0" cellpadding="0" cellspacing="0" class="Table" id="bkmrk-exposure-surface-the" style="width: 100.0%; border-collapse: collapse; mso-yfti-tbllook: 32; mso-padding-alt: 0in 5.4pt 0in 5.4pt;" width="100%"><thead><tr style="mso-yfti-irow: -1; mso-yfti-firstrow: yes; mso-yfti-lastfirstrow: yes;"><td style="border: none; border-bottom: solid windowtext 1.0pt; mso-border-bottom-alt: solid windowtext .25pt; padding: 0in 5.4pt 0in 5.4pt;" valign="bottom"><span style="mso-bookmark: the-defense-surfaces;">Exposure surface</span>

</td><td style="border: none; border-bottom: solid windowtext 1.0pt; mso-border-bottom-alt: solid windowtext .25pt; padding: 0in 5.4pt 0in 5.4pt;" valign="bottom"><span style="mso-bookmark: the-defense-surfaces;">The threat</span>

</td><td style="border: none; border-bottom: solid windowtext 1.0pt; mso-border-bottom-alt: solid windowtext .25pt; padding: 0in 5.4pt 0in 5.4pt;" valign="bottom"><span style="mso-bookmark: the-defense-surfaces;">The operational defense</span>

</td></tr></thead><tbody><tr style="mso-yfti-irow: 0;"><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">**FCC license &amp; political file**</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">Missed political-file windows, lowest-unit-charge violations, late filings — license risk</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">Frigg’s statutory clocks (categorical inside her frame); Urd’s sealed proof of timely action; SEV-1 escalation on any statutory breach in progress</span>

</td></tr><tr style="mso-yfti-irow: 1;"><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">**SOX control environment**</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">SBS is publicly traded; weak ITGC or unverifiable figures undermine §302/§906 certifications</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">Sif’s verify-don’t-correct reconciliation; Njord’s permitted flows; Thor’s checkpoints; the four-record sequence; seven-year WORM retention</span>

</td></tr><tr style="mso-yfti-irow: 2;"><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">**Customer billing disputes**</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">Double-charges, disputed invoices, missing orders</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">Thor’s idempotent execution (one double-charge = breach of contract); order-to-cash four-record linkage from order to deposit</span>

</td></tr><tr style="mso-yfti-irow: 3;"><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">**Data privacy &amp; access scrutiny**</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">Over-broad access, unlogged reads, surveillance drift</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">Heimdall’s G0 verification; Tyr’s ABAC with no internal exceptions; audit-of-audit (every access is itself a record); aggregate-only pattern detection</span>

</td></tr><tr style="mso-yfti-irow: 4;"><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">**AI-use disclosure**</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">State AI laws and FTC posture on undisclosed AI acting for the company</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">Take-Notice (root canonical); Baldr’s AI-origin disclosure enforcement; Bragi’s mandatory disclosure slots</span>

</td></tr><tr style="mso-yfti-irow: 5;"><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">**HR / payroll data (ADP)**</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">Sensitive employee data exposed to automation</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">Domain-scoped Mimir access; Tyr’s least-privilege brokering; no standing credentials anywhere</span>

</td></tr><tr style="mso-yfti-irow: 6; mso-yfti-lastrow: yes;"><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">**Concentrated authority**</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">Single-approver collapse; unmanaged break-glass</span>

</td><td style="padding: 0in 5.4pt 0in 5.4pt;" valign="top"><span style="mso-bookmark: the-defense-surfaces;">Single-Maintainer-Appendix: roster, dual-agent attestation (reversible only), capacity notation, monthly break-glass review</span>

</td></tr></tbody></table>

## <a name="whats-not-a-defense"></a>What’s Not a Defense

<span style="mso-bookmark: whats-not-a-defense;">The Dash does not defend against:</span>

<span style="mso-bookmark: whats-not-a-defense;"><span style="mso-bidi-font-family: Cambria; mso-bidi-theme-font: minor-latin;"><span style="mso-list: Ignore;">•<span style="font: 7.0pt 'Times New Roman';"> </span></span></span>**Substantive financial error.** If a figure is wrong on the substance, the ledger captures the wrong number faithfully. The trail is not a correctness check; Sif flags substance, humans decide it.</span>

<span style="mso-bookmark: whats-not-a-defense;"><span style="mso-bidi-font-family: Cambria; mso-bidi-theme-font: minor-latin;"><span style="mso-list: Ignore;">•<span style="font: 7.0pt 'Times New Roman';"> </span></span></span>**Human-approved malfeasance.** If a human approves a bad action, G2 records the authorization — it does not invalidate it. Human sign-off retains all authority and all liability.</span>

<span style="mso-bookmark: whats-not-a-defense;"><span style="mso-bidi-font-family: Cambria; mso-bidi-theme-font: minor-latin;"><span style="mso-list: Ignore;">•<span style="font: 7.0pt 'Times New Roman';"> </span></span></span>**The LaMusica blind spot.** The closed boundary means the fleet sees nothing inside LaMusica. That blindness is deliberate constitutional design — and it is disclosed as a blind spot, not papered over as coverage.</span>

<span style="mso-bookmark: whats-not-a-defense;"><span style="mso-bidi-font-family: Cambria; mso-bidi-theme-font: minor-latin;"><span style="mso-list: Ignore;">•<span style="font: 7.0pt 'Times New Roman';"> </span></span></span>**Content error that passes validation.** A Bragi draft can be G3-valid and still wrong on the merits; the trail captures what was validated, not whether the validator was right.</span>

<span style="mso-bookmark: whats-not-a-defense;"><span style="mso-bidi-font-family: Cambria; mso-bidi-theme-font: minor-latin;"><span style="mso-list: Ignore;">•<span style="font: 7.0pt 'Times New Roman';"> </span></span></span>**Legacy-system failure.** If WideOrbit or Oracle fails to execute its side, the sequence captures the failure; remediation is operational, not defensive.</span>

<span style="mso-bookmark: whats-not-a-defense;">The Dash’s defense is **procedural integrity, not substantive correctness**. Substantive correctness depends on agent competence and — finally — on human judgment. Every mechanism in this table exists to make that division of responsibility provable.</span>

## <a name="authoritative-for"></a>Authoritative For

<span style="mso-bookmark: authoritative-for;">Board and counsel review of the fleet’s posture; auditor orientation; incident-response framing; oversight-package narrative.</span>

## <a name="whats-not-here"></a>What’s Not Here

<span style="mso-bookmark: whats-not-here;">Mechanisms themselves (10-Audit-Trail-Spec, 10-Governance-Gate-Spec); incident classification (00-Incident-Response-Matrix).</span>

## <a name="modification-protocol"></a>Modification Protocol

<span style="mso-bookmark: modification-protocol;">Proposal drafted by the responsible agent → legal/sufficiency review where statutory interpretation is implicated → Odin staffs the synthesis pass → G2 request with full evidence package → human decision per the Single-Maintainer-Appendix authority structure. Approved modifications are versioned (1.0 → 1.1 minor; 1.x → 2.0 material) and captured in Urd’s ledger as policy\_change-class records. Layer 1 files are not modified by this protocol — they require SBS Board / IT Governance authorization via Asgard Policy Review.</span>

<div align="center" class="MsoNormal" id="bkmrk-" style="text-align: center;">---

</div><span style="mso-bookmark: modification-protocol;">**Document Control:** SBS-DASH-PROC-04 · v1.1 · 2026-08-05 · SHA-256 (content above): </span><span style="mso-bookmark: modification-protocol;"><span class="VerbatimChar"><span style="font-size: 11.0pt; mso-bidi-font-size: 12.0pt;">43e8…31a9</span></span> · Sealed under Audit-Trail-Spec § 8.2. Modification authority: SBS Board / IT Governance via Asgard Policy Review (Governance-Gate); revalidation propagates per Tyr-SKILL § 3.4.</span>