Beschreibung

The purpose of Special Publication 800-39 is to provide guidance for an integrated, organization-wide program for managing information security risk to organizational operations , organizational assets, individuals, other organizations, and the Nation resulting from the operation and use of federal information systems. 

NIST

Weiterführende Links

Das Dokument kann hier heruntergeladen werden.

Schlagwörter

risk management — security — risk assessment — roles — responsibilities — organization — mission — information system — enterprise risk management — continuous monitoring — joint task force transformation initiative

Status

Aktuell: Stand 2011