Transcription of FFIEC Information Technology Examination Handbook ...
{{id}} {{{paragraph}}}
FFIEC Information Technology Examination Handbook Information security SEPTEMBER 2016 FFIEC IT Examination Handbook Information security September 2016 i Contents INTRODUCTION .. 1 I GOVERNANCE OF THE Information security PROGRAM .. 3 security Culture .. 3 Responsibility and Accountability .. 3 Resources .. 5 II Information security PROGRAM MANAGEMENT .. 6 Risk Identification .. 7 Threats .. 8 Vulnerabilities .. 8 Supervision of Cybersecurity Risk and Resources for Cybersecurity Preparedness .. 9 Risk Measurement .. 10 Risk Mitigation .. 11 Policies, Standards, and Procedures .. 11 Technology Design .. 12 Control Types .. 12 Control Implementation .. 13 Inventory and Classification of Assets .. 14 Mitigating Interconnectivity Risk .. 14 User security Controls.
the National Credit Union Administration (NCUA), the Office of the Comptroller of the Currency (OCC), the State ... IT Handbook’s “Management” booklet, this booklet addresses specific governance topics related to information security, including the following:
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}