Transcription of Risk Management Framework Process Map
{{id}} {{{paragraph}}}
PNNL-28347 Prepared for the Department of Energy under Contract DE-AC05-76RL01830 Risk Management Framework Process Map Prepared for the Federal Energy Management Program November 2018 ME Mylrea MD Watson SNG Gourisetti JE Castleberry M Touhiduzzaman iii Acronyms and Abbreviations AO Authorizing Official ISO Information system Owner ISSO Information system security Officer NIST National Institute of Standards & Technology POA&M plan of Action and Milestones RAR Risk Assessment Report RMF Risk Management Framework SAR security Assessment Report SCA security Control Assessor SCTM security Controls Traceability Matrix SP Special Publication SSP system security plan iv Contents Acronyms and Abbreviations .. iii Introduction .. 1 The Risk Management Framework .
SSP System Security Plan . iv . ... Figure 2 depicts the available NIST authored guidance documents to assist in each step of the RMF process. 2. Figure 2. Document Mapping for RMF ... Using appropriate baseline and overlays, select security controls, and then tailor as required to prevent security breaches of an information system.
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}