|
Federal Information Security Management Act
The Federal Information Security Management Act (FISMA) of 2002 mandates each federal agency to implement a comprehensive information security program for its systems. The security programs mandated by FIPS 199 are intended to identify and quantify threats to assets based on risk analysis. The risk-based approach categorizes each system based on the key attributes of Confidentiality, Integrity and Availability. The security controls implemented on the assets are then evaluated based on the NIST 800-53 guidelines. The controls defined in the NIST 800-53 are mandated by FIPS 200.
Virtustream Security Solutions ComplyVision™ solution has been designed to guide agency C&A teams through a structured methodology that strictly follows the NIST guidelines and helps prepare the C&A package complete with assessment, analysis and documentation. The solution also allows creation, maintenance and reporting of the Plan of Action and Milestones (POA&M) throughout the pre- and post-audit process.
ComplyVision™ solution provides a full view of your current security posture through self-assessment while breaking down the improvement process into straightforward, manageable and repeatable steps. Using methodical analysis, potential security gaps are identified and addressed with authentic, real-world solutions.
ComplyVision™ asset module provides comprehensive documentation and also allows you to define the dependencies between systems to create a full knowledge of the Enterprise Architecture (EA). The identification and documentation of the dependencies is the most critical requirement for conducting risk assessment and impact analysis, which in-turn are critical for risk mitigation plans including Business Continuity and Disaster Recovery Plans (BCP/DRP).
ComplyVision™ solution creates a comprehensive and intuitive step-by-step approach to assess your FISMA preparedness as well as improve the grade on the agency scorecard.
For Continuous compliance, consider combining the ComplyVision™ solution with the ThreatVision™ solution.
For additional information on how the ComplyVision™ and ThreatVision™ solution can help you in your preparation of FISMA C&A package, FISMA audit and Continuous Compliance, please contact our experts at 703.310.6449, or e-mail us at [email protected].
|