Best Practices White Papers
FISMA Management: Getting Value From Compliance
Overview Since the Federal Information Security Management Act of 2002 (FISMA) was written to enforce good information assurance practices, one would expect to find a large overlap between what agencies are required to do under FISMA and what they would have done anyway as a matter of best practice. FISMA reports are necessary for Office of Management and Budget (OMB) and Congress to fulfill their oversight functions, but they are not detailed enough or timely enough to be helpful in the day-to-day security operations of an agency. This paper will discuss an approach to FISMA management that provides agencies the information they need to manage their Information Assurance (IA) program and automates compliance with FISMA reports.
| Publisher | CA (Computer Associates) | File Format | |
|---|---|---|---|
| Date Published | November 2005 | Downloads | 1 |
| Format | White Papers | ||
| Topics | |||



