Computer Security Resource Center

Computer Security Resource Center

Computer Security
Resource Center

White Paper

Supplemental Guidance on Ongoing Authorization: Transitioning to Near Real-Time Risk Management

Date Published: 6/3/2014

Withdrawn: April 19, 2019

Planning Note (4/19/2019): The information in this white paper has been rolled into SP 800-37 Revision 2. Please refer to that document for current guidance.

Superseded By: SP 800-37 Rev. 2 (December 2018)

Author(s)

Kelley Dempsey (NIST), Ron Ross (NIST), Kevin Stine (NIST)

Abstract

Keywords

Federal Information Security Management Act; information security; Office of Management and Budget; ongoing assessment; ongoing authorization; continuous monitoring; Risk Management Framework
Control Families

Risk Assessment; Security Assessment and Authorization;

Documentation

Publication:
White Paper (DOI)

Supplemental Material:
None available