NIST rMF Flashcards
Prepare
Activities necessary to manage risk before a breach.
Look for risks and opportunities to add controls
Categorize
Developer risk management processes and tasks
Select
Choose, customize, and capture documentation of controls that protect an org
Eg: keep a playbook up to daye
Implement
Implement security and privacy plans
Employees needing password resets is an example
Assess
Determine if established controls are implemented correctly
Identify weaknesses and see if any changes need to be made
Authorize
Being accountable for security and privacy risks
Generate reports
Establish project milestones towards goals
Monitor
Be aware of how systems are operating
Know how the current systems are supporting the goals and security posture