Beschreibung
The purpose of Special Publication 800-39 is to provide guidance for an integrated, organization-wide program for managing information security risk to organizational operations , organizational assets, individuals, other organizations, and the Nation resulting from the operation and use of federal information systems.
NIST
Weiterführende Links
Das Dokument kann hier heruntergeladen werden.
Schlagwörter
risk management — security — risk assessment — roles — responsibilities — organization — mission — information system — enterprise risk management — continuous monitoring — joint task force transformation initiative
Status
Aktuell: Stand 2011