Loading...

Messages

Proposals

Stuck in your homework and missing deadline? Get urgent help in $10/Page with 24 hours deadline

Get Urgent Writing Help In Your Essays, Assignments, Homeworks, Dissertation, Thesis Or Coursework & Achieve A+ Grades.

Privacy Guaranteed - 100% Plagiarism Free Writing - Free Turnitin Report - Professional And Experienced Writers - 24/7 Online Support

Cis assessment standard 1 answers

23/11/2021 Client: muhammad11 Deadline: 2 Day

Worksheet 1: Intro to the NIST SP 800-53A

Assessing the Security Controls in Federal Information Systems and Organizations

Course Learning Outcome(s)

· Describe the components and basic requirements for creating an audit plan to support business and system considerations.

· Describe the parameters required to conduct and report on IT infrastructure audit for organizational compliance.

Auditing in IT is the monitoring and validation of safeguards that are put in place to protect information. These safeguards are categorized as controls. Controls are sets or groups of safeguards that relate to different areas within IT systems such as the implementation of security features in hardware and software, administrative processes such as written administrative polices and user agreements.

Controls are categorized into families which define the type of control to be complied to and classes. Classes include management, operational and technical.

ASSESSMENTS WITHIN THE SYSTEM DEVELOPMENT LIFE CYCLE

Security assessments can be effectively carried out at various stages in the system development life cycle to increase the grounds for confidence that the security controls employed within or inherited by an information system are effective in their application. Assessment activities in the initial system development life cycle phases include, for example, design and code reviews, application scanning, and regression testing. Security weaknesses and deficiencies identified early in the system development life cycle can be resolved more quickly and in a much more cost-effective manner before proceeding to subsequent phases in the life cycle. The objective is to identify the information security architecture and security controls up front and to ensure that the system design and testing validate the implementation of these controls. The assessment procedures described in Appendix F of the NIST SP 800-53A can support these types of technical assessments carried out during the initial stages of the system development life cycle. Security assessments are also routinely conducted by information system owners, common control providers, information system security officers, independent assessors, auditors, and Inspectors General during the operations and maintenance phase of the life cycle to ensure that security controls are effective and continue to be effective in the operational environment where the system is deployed. For example, organizations assess all security controls employed within and inherited by the information system during the initial security authorization. Subsequent to the initial authorization, the organization assesses the security controls (including management, operational, and technical controls) on an ongoing basis. The frequency of such monitoring is based on the continuous monitoring strategy developed by the information system owner or common control provider and approved by the authorizing official.

As previously stated, organizations develop controls based on laws, regulations, best practices and industry standards. These controls are audited periodically to validate that processes are in place and working. This responsibility is that of the Auditor also referred to as the Security Control Assessor, who will independently validate these controls to ensure compliance and report the findings to higher authority.

The National Institute of Standards and Technology (NIST) has developed a series of specialized publications that layout the framework for the implementation, operation and management of information Technology. Controls can be found within the NIST Special Publication 800-53A which you can find in the Student Center under Additional Resources.

Refer to the Assessment Procedures in NIST Special Publication 800-53A and complete the following;

1. Complete the table below by determining the 18 Families and their corresponding Classes of controls as described in the NIST Special Publication 800-53 A:

Family

Class

Homework is Completed By:

Writer Writer Name Amount Client Comments & Rating
Instant Homework Helper

ONLINE

Instant Homework Helper

$36

She helped me in last minute in a very reasonable price. She is a lifesaver, I got A+ grade in my homework, I will surely hire her again for my next assignments, Thumbs Up!

Order & Get This Solution Within 3 Hours in $25/Page

Custom Original Solution And Get A+ Grades

  • 100% Plagiarism Free
  • Proper APA/MLA/Harvard Referencing
  • Delivery in 3 Hours After Placing Order
  • Free Turnitin Report
  • Unlimited Revisions
  • Privacy Guaranteed

Order & Get This Solution Within 6 Hours in $20/Page

Custom Original Solution And Get A+ Grades

  • 100% Plagiarism Free
  • Proper APA/MLA/Harvard Referencing
  • Delivery in 6 Hours After Placing Order
  • Free Turnitin Report
  • Unlimited Revisions
  • Privacy Guaranteed

Order & Get This Solution Within 12 Hours in $15/Page

Custom Original Solution And Get A+ Grades

  • 100% Plagiarism Free
  • Proper APA/MLA/Harvard Referencing
  • Delivery in 12 Hours After Placing Order
  • Free Turnitin Report
  • Unlimited Revisions
  • Privacy Guaranteed

6 writers have sent their proposals to do this homework:

Quick Mentor
Top Class Engineers
Quick N Quality
Solutions Store
Financial Solutions Provider
Engineering Exam Guru
Writer Writer Name Offer Chat
Quick Mentor

ONLINE

Quick Mentor

Being a Ph.D. in the Business field, I have been doing academic writing for the past 7 years and have a good command over writing research papers, essay, dissertations and all kinds of academic writing and proofreading.

$28 Chat With Writer
Top Class Engineers

ONLINE

Top Class Engineers

I have worked on wide variety of research papers including; Analytical research paper, Argumentative research paper, Interpretative research, experimental research etc.

$22 Chat With Writer
Quick N Quality

ONLINE

Quick N Quality

As per my knowledge I can assist you in writing a perfect Planning, Marketing Research, Business Pitches, Business Proposals, Business Feasibility Reports and Content within your given deadline and budget.

$32 Chat With Writer
Solutions Store

ONLINE

Solutions Store

I can assist you in plagiarism free writing as I have already done several related projects of writing. I have a master qualification with 5 years’ experience in; Essay Writing, Case Study Writing, Report Writing.

$44 Chat With Writer
Financial Solutions Provider

ONLINE

Financial Solutions Provider

After reading your project details, I feel myself as the best option for you to fulfill this project with 100 percent perfection.

$38 Chat With Writer
Engineering Exam Guru

ONLINE

Engineering Exam Guru

I will be delighted to work on your project. As an experienced writer, I can provide you top quality, well researched, concise and error-free work within your provided deadline at very reasonable prices.

$34 Chat With Writer

Let our expert academic writers to help you in achieving a+ grades in your homework, assignment, quiz or exam.

Similar Homework Questions

Iscsi target connected but no volume present - Business document cover page - Blink mink lashes bloomington mn - Determination of calorific value of food by bomb calorimeter - Australian woollen mills pty ltd v the commonwealth - PSY-838 Wk 6 DQ2 - Athlean x straight arm pulldown - Body of knowledge ohs - Clinical Case Presentation (PowerPoint 12 SLIDES) - Cable act of 1922 - 16 item tuckman procrastination scale - Paper - Er diagram for departmental store management system - Japanese decision making style - Rc drilling sampling procedure - Conflict resolution form template - Icloud erp mriu - How to evacuate a patient who is bed bound - Tkam chapter 31 summary - Melbourne airport asic approvals - System Rules - Modern day troy map - We the people 12th edition - Colleagues Response - Healthcare Management - Mountbatten university new york - Problem 6 3a perpetual alternative cost flows lo p1 - Target costing case study tata nano - How to become an embalmer in australia - Oslcc cpp - Take my milk for gall - It sourcing and cloud strategy - Batos bolillos pochos and pelados - Consciousness crash course psychology 8 - Four elements of service encounter design - Cisco wsa demo license download - Stanley grove primary academy staff - Properties of metals practical - Why is eggshell a good material for edta to chelate - Rocks and minerals venn diagram - Executive summary - Lateral area equation of a prism - Short answer response examples - LDR531 Week 3 Learning Team Communication Challenges Conversation - What word does jefferson use to describe rights - A skydiver steps from a high flying helicopter - Mechanistic and organic structure ppt - Curvilinear model of anxiety - Bsbwor202 organise and complete daily work activities - Empire window company solon oh - A rounded version the theory of multiple intelligences summary - Unit 4 assignment 1 business - Accouting Case - A company reports the following sales related information - You have shown me favour unending - Cyber security awareness training proposal - Firearmsid com bullet id answers - PSY 2.2 - Upper management's interest in outcome evaluation data is focused on - ASSIGNMENT - (1) Preparing a power point Review of 400 word for each 8 chapters (Forrester, shadow of Justice) - Jasper jones digging hole - Basic ping pong rules - The relationship between financial leverage and profitability pelican paper inc - The sagebrush state free pdf - Unit 2 IP Staffing, Budget and Audits - 6211-EDUC-1300-Learning - A man called bee questions and answers - Stihl ts410 service manual - Exam 1 - Burn her monty python - Changing nature of workforce - Faraday ice pail and charge production lab report - St matthew from the gospel book of charlemagne - A thousand splendid suns prezi - Grey elephant in denmark - Cyber Security - 1776 david mccullough chapter summaries - Martin luther king and malcolm x worksheet - Easa amc 20 29 - LD4 - Electromagnetic spectrum chemistry worksheet - IT Forum Reply - Vertiv liebert pdx password - Week 5 programming assignment python - Cid episode abhijeet in jail part 2 - American bureau of shipping abs singapore - Ib math internal assessment - Harvard business publishing student - Prejudice against immigrants was known as ___ - EMOTIONAL AND CULTURAL INTELLIGENCE - Asian journal of control template - E but 2 ene - Ancient greece essay topics - Cover page unsw engineering - Hw - Identifying hazards in occupational environments ati - Business Efficiency and Responsiveness - Describe the prospects for establishing a “critical society” as described by graham sumner. - Expressive techniques for vocals