Preface

As the federal regulators have come to understand the risks to the U.S. national infrastructure, regulations and laws have been written to ensure that due diligence occurs in securing critical applications and systems. An outcome of the laws and regulations is a formalized process for reviewing, documenting, analyzing, and evaluating information security requirements and controls. The process described in this book, known as C&A, will assist government agencies in complying with the Federal Information Security Management Act of 2002.

Audience

The audience for this book includes those individuals currently performing information security support at U.S. Federal agencies, defense contractors that need to comply with FISMA to support ...

Get FISMA Certification and Accreditation Handbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.