FISMA Compliance Handbook, 2/e (Paperback)

Laura P. Taylor

買這商品的人也買了...

商品描述

content<p>This comprehensive book instructs IT managers to adhere to federally mandated compliance requirements. <i>FISMA Compliance Handbook Second Edition </i>explains what the requirements are for FISMA compliance and why FISMA compliance is mandated by federal law. The evolution of Certification and Accreditation is discussed. </p> <p>This book walks the reader through the entire FISMA compliance process and includes guidance on how to manage a FISMA compliance project from start to finish. The book has chapters for all FISMA compliance deliverables and includes information on how to conduct a FISMA compliant security assessment. </p> <p>Various topics discussed in this book include the NIST Risk Management Framework, how to characterize the sensitivity level of your system, contingency plan, system security plan development, security awareness training, privacy impact assessments, security assessments and more. Readers will learn how to obtain an Authority to Operate for an information system and what actions to take in regards to vulnerabilities and audit findings. </p><i> <p>FISMA Compliance Handbook Second Edition, </i>also includes all-new coverage of federal cloud computing compliance from author Laura Taylor, the federal government's technical lead for FedRAMP, the government program used to assess and authorize cloud products and services. </p><ul><li>Includes new information on cloud computing compliance from Laura Taylor, the federal government's technical lead for FedRAMP </li> <p><li>Includes coverage for both corporate and government IT managers </li> <p><li>Learn how to prepare for, perform, and document FISMA compliance projects</li> <p><li>This book is used by various colleges and universities in information security and MBA curriculums. </li> </ul>sourceProduct Description

商品描述(中文翻譯)

本書全面指導IT經理遵守聯邦法規的合規要求。《FISMA合規手冊第二版》解釋了FISMA合規的要求以及為何聯邦法律要求FISMA合規。書中討論了認證和授權的演變。

本書引導讀者從頭到尾完成整個FISMA合規過程,並提供如何管理FISMA合規項目的指導。書中包含了所有FISMA合規的交付成果的章節,並提供如何進行符合FISMA合規的安全評估的資訊。

本書討論的各種主題包括NIST風險管理框架、如何評估系統的敏感程度、應急計劃、系統安全計劃的制定、安全意識培訓、隱私影響評估、安全評估等。讀者將學習如何為信息系統獲得運營授權,以及在漏洞和審計發現方面應採取的行動。

《FISMA合規手冊第二版》還包括作者Laura Taylor對聯邦雲計算合規的全新涵蓋範圍,Laura Taylor是聯邦政府FedRAMP的技術主管,該計劃用於評估和授權雲產品和服務。

- 包含Laura Taylor對雲計算合規的新資訊,她是聯邦政府FedRAMP的技術主管
- 包含企業和政府IT經理的相關內容
- 學習如何準備、執行和記錄FISMA合規項目
- 本書被多所大學和學院用於信息安全和MBA課程中。