Risk Management Framework Flashcards
Step 1 - CATEGORIZE (SP 800-60)
Guide for Mapping Types of Information and Information Systems to Security Categories
Step 2 - SELECT (SP 800-53)
Security and Privacy Controls for Information Systems and Organizations
Step 3 - IMPLEMENT (SP 800-160)
Developing Cyber-Resilient Systems: A Systems Security Engineering Approach
Step 4 - ASSESS (SP 800-53A)
Assessing Security and Privacy Controls in Information Systems and Organizations
Step 5 - AUTHORIZE (SP 800-37)
Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy
Step 6 - MONITOR (SP 800-137)
Information Security Continuous Monitoring (ISCM) for Federal Information Systems and Organizations