Newsletter:

Skip Navigation LinksHome > News > Security > US government releases security guidebook for IT managers

US government releases security guidebook for IT managers

14 July 2008 05:06PM
Tags: security | guidebook | government

The U.S. National Institute of Standards and Technology (NIST) has released a publication to help IT managers assess security controls.

The U.S. National Institute of Standards and Technology (NIST) last month released a new publication aimed at helping IT managers assess security controls in their information systems.

The “Special Publication 800-53A, Guide for Assessing the Security Controls in Federal Information Systems”, the document defines a process for determining if security controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting organisational security policies.

The publication is expected to be useful to IT managers who must satisfy requirements of the 2002 U.S. Federal Information Security Management Act (FISMA), as well as to IT professionals across the industry.

“When security controls are less than fully effective, information system vulnerabilities can be exploited by adversaries to compromise the confidentiality, integrity and availability of information processed, stored and transmitted by the system,” said Ron Ross, project leader, FISMA Implementation Project.

Additional tools and techniques for implementing the assessment procedures in Special Publication 800-53A are expected to be made available on the NIST Web site after July 25.

   


Ads by Google


Thoughts on this article? Add a comment below.
Comments: 1
...brought to you by such secure organisations as the United States Pentagon...

Forgive me for being skeptical...
iTnews - comments icon Posted by cfJul 14, 2008 9:28 PM
Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 


Tripwire - Click here to win an iTouch





Product Reviews

Star Rating
The Cyber-Ark Enterprise Password Vault, or EPV, is a high-end password management powerhouse.
Star Rating
The Hitachi ID-Archive sets its focus on password randomisation.
Star Rating
The Lieberman Software Enterprise Random Pass­word Manager is a full-on password manager and randomiser for...
Star Rating
Proginet SecurForce is a little bit of a horse of a different color for this month's Group Test.
Star Rating
On the surface, RoboForm Enterprise starts out looking like a single sign-on product, but that is just on the...
Unified Communications Podcast Centre

TopTopics
(6926) -  microsoft
(6474) -  iinet
(6465) -  copyright
(6465) -  afact
(6350) -  internet
(5920) -  servers
(5920) -  mipi
(4085) -  phone
(4081) -  telstra
(3654) -  nvidia
(3339) -  broadband
(3282) -  nbn
(2430) -  avg
(1970) -  onecare
(1886) -  google