Risk Management Framework

A Lab-Based Approach to Securing Information Systems

Paperback Engels 2013 9781597499958
Verwachte levertijd ongeveer 9 werkdagen

Samenvatting

The RMF allows an organization to develop an organization-wide risk framework that reduces the resources required to authorize a systems operation. Use of the RMF will help organizations maintain compliance with not only FISMA and OMB requirements but can also be tailored to meet other compliance requirements such as Payment Card Industry (PCI) or Sarbanes Oxley (SOX). With the publishing of NIST SP 800-37 in 2010 and the move of the Intelligence Community and Department of Defense to modified versions of this process, clear implementation guidance is needed to help individuals correctly implement this process. No other publication covers this topic in the detail provided in this book or provides hands-on exercises that will enforce the topics. Examples in the book follow a fictitious organization through the RMF, allowing the reader to follow the development of proper compliance measures. Templates provided in the book allow readers to quickly implement the RMF in their organization. The need for this book continues to expand as government and non-governmental organizations build their security programs around the RMF. The companion website provides access to all of the documents, templates and examples needed to not only understand the RMF but also implement this process in the reader’s own organization.

Specificaties

ISBN13:9781597499958
Taal:Engels
Bindwijze:Paperback

Lezersrecensies

Wees de eerste die een lezersrecensie schrijft!

Inhoudsopgave

<p>Introduction </p> <p>Laws, Regulation and Guidance </p> <p>The Joint Task Force Transformation Initiative </p> <p>Key Positions and Roles </p> <p>Transition from the Four-Phase Certification and Accreditation Cycle </p> <p>The RMF </p> <p>Integrated Organization-Wide Risk Management </p> <p>Lab Organization </p> <p>Phase 1: System Categorization </p> <p>Phase 2: Control Selection </p> <p>Phase 3: Control Implementation </p> <p>Phase 4: Control Assessment </p> <p>Phase 5: System Authorization </p> <p>Phase 6: Continuous Monitoring</p> <p> <p>Use of RMF in Other Environments </p> <p>Future Planned Changes </p> <p>Use with Other Compliance Requirements </p> <p>Appendices </p>

Managementboek Top 100

Rubrieken

    Personen

      Trefwoorden

        Risk Management Framework