The IT Law Wiki
Advertisement

Citation[]

NIST, Information Security Continuous Monitoring for Federal Information Systems and Organizations (NIST Special Publication 800-137) (Sept. 2011) (full-text).

Overview[]

This publication was developed by NIST to further its statutory responsibilities under the Federal Information Security Management Act (FISMA). NIST is responsible for developing information security standards and guidelines, including minimum requirements for federal information systems, but such standards and guidelines shall not apply to national security systems without the express approval of appropriate federal officials exercising policy authority over such systems.

Advertisement