FISMA Compliance Handbook, 2/e (Paperback)
暫譯: FISMA 合規手冊,第 2 版 (平裝本)

Laura P. Taylor

買這商品的人也買了...

商品描述

content<p>This comprehensive book instructs IT managers to adhere to federally mandated compliance requirements. <i>FISMA Compliance Handbook Second Edition </i>explains what the requirements are for FISMA compliance and why FISMA compliance is mandated by federal law. The evolution of Certification and Accreditation is discussed. </p> <p>This book walks the reader through the entire FISMA compliance process and includes guidance on how to manage a FISMA compliance project from start to finish. The book has chapters for all FISMA compliance deliverables and includes information on how to conduct a FISMA compliant security assessment. </p> <p>Various topics discussed in this book include the NIST Risk Management Framework, how to characterize the sensitivity level of your system, contingency plan, system security plan development, security awareness training, privacy impact assessments, security assessments and more. Readers will learn how to obtain an Authority to Operate for an information system and what actions to take in regards to vulnerabilities and audit findings. </p><i> <p>FISMA Compliance Handbook Second Edition, </i>also includes all-new coverage of federal cloud computing compliance from author Laura Taylor, the federal government's technical lead for FedRAMP, the government program used to assess and authorize cloud products and services. </p><ul><li>Includes new information on cloud computing compliance from Laura Taylor, the federal government's technical lead for FedRAMP </li> <p><li>Includes coverage for both corporate and government IT managers </li> <p><li>Learn how to prepare for, perform, and document FISMA compliance projects</li> <p><li>This book is used by various colleges and universities in information security and MBA curriculums. </li> </ul>sourceProduct Description

商品描述(中文翻譯)

這本全面的書籍指導IT經理遵循聯邦法規要求的合規性要求。《FISMA合規手冊(第二版)》解釋了FISMA合規的要求是什麼,以及為什麼聯邦法律要求FISMA合規。書中討論了認證和授權的演變。

本書引導讀者了解整個FISMA合規過程,並提供如何從頭到尾管理FISMA合規項目的指導。書中包含所有FISMA合規交付成果的章節,並包括如何進行FISMA合規安全評估的信息。

本書討論的各種主題包括NIST風險管理框架、如何描述系統的敏感性級別、應急計劃、系統安全計劃的制定、安全意識培訓、隱私影響評估、安全評估等。讀者將學習如何獲得信息系統的操作授權,以及在處理漏洞和審計發現時應採取的行動。

《FISMA合規手冊(第二版)》還包括作者Laura Taylor對聯邦雲計算合規的新內容,Laura Taylor是聯邦政府FedRAMP的技術負責人,FedRAMP是用於評估和授權雲產品和服務的政府計劃。

- 包含來自Laura Taylor的雲計算合規新信息,Laura Taylor是聯邦政府FedRAMP的技術負責人
- 包含針對企業和政府IT經理的內容
- 學習如何準備、執行和記錄FISMA合規項目
- 本書被多所大學和學院用於信息安全和MBA課程。