Posts

My thoughts and ideas

  • RMF Authorize

    NIST Risk Management Framework

    RMF Authorize

    This is the series of articles to use as a study guide for the (ISC)2 CGRC exam. In this article, we will discuss the Authorize steps in the Risk Management Framework.

    Authorize Tasks

    • R-1 – Authorization Package
    • R-2 – Risk Analysis and Determination
    • R-3 – Risk...
  • RMF Assess

    NIST Risk Management Framework

    RMF Assess

    This is the series of articles to use as a study guide for the (ISC)2 CGRC exam. In this article, we will discuss the Assess steps in the Risk Management Framework.

    Assess Tasks

    • A-1 – Assessor selection
    • A-2 – Assessment plan
    • A-3 – Control assessment
    • A-4...
  • RMF Implement

    NIST Risk Management Framework

    RMF Implement

    This is the series of articles to use as a study guide for the (ISC)2 CGRC exam. In this article, we will discuss the Implement steps in the Risk Management Framework.

    Implement Tasks

    • I-1 – Control Implementation
    • I-2 – Update Control implementation information
    • Primary roles for...
  • RMF Select

    NIST Risk Management Framework

    RMF Select

    This is the series of articles to use as a study guide for the (ISC)2 CGRC exam. In this article, we will discuss the Select steps in the Risk Management Framework.

    Select Tasks

    • S-1 – Control Selection
    • S-2 – Control Tailoring
    • S-3 – Control Allocation
    • S-4...
  • RMF Categorize

    NIST Risk Management Framework

    RMF Categorize

    This is the series of articles to use as a study guide for the (ISC)2 CGRC exam. In this article, we will discuss the Categorize steps in the Risk Management Framework.

    Categorize Tasks

    FIPS 199

    CMSS 1253

    • C-1 – System Description
    • C-2 – Security Categorization
    • C-3...