• FISMA is a law
  • OMB is executive responsible for FISMA compliance
  • Directive on FISMA is found in OMB Circular A 130 Appendix III
  • NIST has developed the RMF to help comply with FISMA
  • Risk Management Framework

Security Assessment & Authorization (SA&A) New

Categorization Control SelectionControl Implementation Control Assessment Authorization Continuous Monitoring

Certification and Accreditation (C&A)

Initial Certification Accreditation Continuous Monitoring

error: Content is protected !!