From the course: Implementing the NIST Risk Management Framework

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Setting monitoring goals to meet NIST requirements

Setting monitoring goals to meet NIST requirements

From the course: Implementing the NIST Risk Management Framework

Start my 1-month free trial

Setting monitoring goals to meet NIST requirements

- [Instructor] Change is inevitable. This is especially true for our information technology, where any change has the possibility of altering security and privacy controls. That is why we need to take steps to continually maintain an ongoing situational awareness about the security and privacy posture of our information systems, applications and operations. We do this through monitoring, which is the final step in the NIST Risk Management Framework, RMF. This is the step that never really ends but is a continual process. To be most efficient, you should establish routines to monitor your environment. These include change management processes, ongoing assessments and risk responses, updating your documentation and reporting, and finally system disposal. Any significant change made to your technology or operational environment should follow a disciplined and structured change management process that controls changes…

Contents