Summary Q4

  • NIST Publications:
    • SP 800-53A
    • SP 800-53
  • From NIST SP 800-53Rev2 to rev3 Program Management families was added. From Rev3 to Rev 4, the Privacy class was added. This class brought 8 families and 26 controls

Internal Auditor VS External Auditor

PHASEDEVILEVABLESPUBLICATIONSLIFE CYCLE
ASSESSING CONTROLSecurity Assessment Plan (SAP) System Security Assessment Report (SAR) Security Test Evaluation (ST&E) Report/ Security Control Assessment (SCA) SP 800-53ASP 800-53ASP 800-53ADevelopment /Acquisition
error: Content is protected !!