Difference between revisions of "Main Page"
(Restoring previous main page) |
|||
Line 1: | Line 1: | ||
− | + | {| style="background:white;color:black;width:60%;" border="0" cellpadding="5" cellspacing="0" align="right" | |
+ | |+'''Navigation''' | ||
+ | |- style="background:#e1e1e1;" align="center" | ||
+ | ! width="30%"|Topic Clusters !! width="40%"|FIPS 200 Families !! width="30%"|Legal Requirements | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Annual Reports Topic Cluster| Annual Reports]] | ||
+ | | [[Guide: Access Control Family| Access Control]] | ||
+ | | [[Guide: E-Government Act Requirements| E-Government Act]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Audit and Accountability Topic Cluster| Audit and Accountability]] | ||
+ | | [[Guide: Audit and Accountability Family| Audit and Accountability]] | ||
+ | | [[Guide: FISMA Requirements| FISMA]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Authentication Topic Cluster| Authentication]] | ||
+ | | [[Guide: Awareness and Training Family| Awareness and Training]] | ||
+ | | [[Guide: HSPD-12 Requirements| HSPD-12]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Awareness and Training Topic Cluster| Awareness and Training]] | ||
+ | | [[Guide: Certification, Accreditation and Security Assessments Family| Certification, Accreditation and Security Assessments]] | ||
+ | | [[Guide: HSPD-7 Requirements| HSPD-7]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Biometrics Topic Cluster| Biometrics]] | ||
+ | | [[Guide: Configuration Management Family| Configuration Management]] | ||
+ | | [[Guide: Health Insurance Portability and Accountability Act Requirements| HIPAA]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Certification and Accreditation Topic Cluster| Certification and Accreditation]] | ||
+ | | [[Guide: Contingency Planning Family| Contingency Planning]] | ||
+ | | [[Guide: OMB Circular A-11 Requirements| OMB Circular A-11]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Communications and Wireless Topic Cluster| Communications and Wireless]] | ||
+ | | [[Guide: Identification and Authentication Family| Identification and Authentication]] | ||
+ | | [[Guide: OMB Circular A-130 Requirements| OMB Circular A-130]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Contingency Planning Topic Cluster| Contingency Planning]] | ||
+ | | [[Guide: Incident Response Family| Incident Response]] || | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Cryptography Topic Cluster| Cryptography]] | ||
+ | | [[Guide: Maintenance Family| Maintenance]] | ||
+ | | style="background:#e1e1e1; color:black"|'''Document Series''' | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Digital Signatures Topic Cluster| Digital Signatures]] | ||
+ | | [[Guide: Media Protection Family| Media Protection]] || | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Forensics Topic Cluster| Forensics]] | ||
+ | | [[Guide: Personnel Security Family| Personnel Security]] | ||
+ | | [[:Category:800 Series| NIST Special Publication 800 Series]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: General IT Security Topic Cluster| General IT Security]] | ||
+ | | [[Guide: Physical and Environmental Protection Family| Physical and Environmental Protection]] | ||
+ | | [[:Category:FIPS| NIST FIPS Series]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Historical Archives Topic Cluster| Historical Archives]] | ||
+ | | [[Guide: Planning Family| Planning]] | ||
+ | | [[:Category:Interagency Reports| NIST Interagency Reports]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Incident Response Topic Cluster| Incident Response]] | ||
+ | | [[Guide: Risk Assessment Family| Risk Assessment]] | ||
+ | | [[:Category:Security Bulletins| NIST Security Bulletins]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Maintenance Topic Cluster| Maintenance]] | ||
+ | | [[Guide: System and Communication Protection Family| System and Communication Protection]] | ||
+ | | [[:Category:OMB Circular| OMB Circulars]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: PKI Topic Cluster| PKI]] | ||
+ | | [[Guide: System and Information Integrity Family| System and Information Integrity]] | ||
+ | | [[:Category:OMB Memorandum| OMB Memorandum]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Personal Identity Verification Topic Cluster| Personal Identity Verification]] | ||
+ | | [[Guide: System and Services Acquisition Family| System and Services Acquisition]] | ||
+ | | [[:Category:HSPD| Presidential Directives]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Planning Topic Cluster| Planning]] | ||
+ | | | ||
+ | | [[:Category:Law| Laws, Regulations, Directives and Policy]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Research Topic Cluster| Research]] | ||
+ | | | ||
+ | | [[:Category:CNSS| Committee for National Security Systems]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Risk Assessment Topic Cluster| Risk Assessment]] | ||
+ | | | ||
+ | | [[:Category:DoDD| DoD Directives]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Services and Acquisitions Topic Cluster| Services and Acquisitions]] | ||
+ | | | ||
+ | | [[:Category:DoDI| DoD Instructions]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Smart Cards Topic Cluster| Smart Cards]] | ||
+ | | | ||
+ | | [[:Category:DoDM| DoD Memos]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! [[Guide: Viruses and Malware Topic Cluster| Viruses and Malware]] | ||
+ | | | ||
+ | | [[:Category:DoDAI| DoD Administrative Instructions]] | ||
+ | |- style="background:white; color:black" align="left" | ||
+ | ! | ||
+ | | | ||
+ | | [[:Category:DoDP| DoD Publications]] | ||
+ | |} | ||
− | |||
− | == | + | == What is FISMApedia == |
− | * [ | + | |
− | * [ | + | FISMApedia is a collection of documents and discussions focused on Federal IT security. This site is a database of current guidance, laws and directives on how the Federal government secures its IT assets. We focus on civilian sector security, including: |
− | * [ | + | |
− | * [ | + | * [[Federal Information Security Management Act]] ([[FISMA]]) |
− | * [ | + | * [[Federal Desktop Core Configuration]] ([[FDCC]]) |
+ | * [[Security Content Automation Protocol]] ([[SCAP]]) | ||
+ | * [[Homeland Security Presidential Directive 12]] ([[HSPD-12]]) | ||
+ | * [[Federal Identity Credentialing Committee]] ([[FICC]]) | ||
+ | |||
+ | For further information on FISMApedia please see our [[FISMApedia:About|about]] page. | ||
+ | |||
+ | == Just Added == | ||
+ | |||
+ | * [[:Category:NIST_SP_800-39|NIST SP 800-39 Managing Information Security Risk: Organization, Mission, and Information System View]] | ||
+ | * OMB Memorandum [[:Category:Memorandum|M-08-22, M-10-10, M-10-23, M-10-28, M-11-01, M-11-02, M-11-03, M-11-04, M-11-05 and M-11-06]] | ||
+ | * [[:Category:NIST_SP_800-53Ar1_Enhanced|Enhanced NIST SP 800-53Ar1 Assessment Procedures combined with associated NIST SP 800-53r3 Security Controls and Enhancements]] | ||
+ | * [[Doc:NIST_Continuous_Monitoring_FAQ|NIST Frequently Asked Questions - Continuous Monitoring]] (Response to NASA Reinterpretation of Guidance) | ||
+ | * Updated [[:Category:NIST_SP_800-53r3|NIST SP 800-53 Revision 3]] to reflect Errata 05-01-2010. | ||
+ | * [[Doc:M-10-15|M-10-15 FY 2010 Reporting Instructions for the Federal Information Security Management Act and Agency Privacy Management]] | ||
+ | * [[:Category:NIST_SP_800-37r1|NIST SP 800-37r1 Guide for Applying the Risk Management Framework to Federal Information Systems: A Security Life Cycle Approach]] | ||
+ | * [[Guidelines_for_Secure_Use_of_Social_Media_by_Federal_Departments_and_Agencies|Guidelines for Secure Use of Social Media by Federal Departments and Agencies 1.0]] | ||
+ | * [[:Category:AnA|2,863 acronyms and abbreviations added with 7,271 definitions from 97 documents published by NIST, DoD, CNSS, GAO and other Federal agencies]] | ||
+ | * [[:Category:Term|4,235 term definitions added using 7,997 definitions from 142 documents published by NIST, DoD, CNSS, GAO and other Federal agencies]] | ||
+ | * [[Granular_800-53r2_800-53r3_Comparison|Granular Comparison of NIST SP 800-53r2 and NIST SP 800-53r3 Control and Enhancements Changes]] | ||
+ | |||
+ | == FISMA Arts == | ||
+ | |||
+ | FISMApedia is proud to host the [[FISMA Arts]] project (also know as [[FISMArts]]). [[FISMArts]] is a project to provide educational material to those seeking to learn about the Federal IT security. It's initial focus is on the production of [[Mnemosyne Project]] media from [[NIST]] [[SP-800]] series documents. |
Revision as of 19:54, 17 May 2018
What is FISMApedia
FISMApedia is a collection of documents and discussions focused on Federal IT security. This site is a database of current guidance, laws and directives on how the Federal government secures its IT assets. We focus on civilian sector security, including:
- Federal Information Security Management Act (FISMA)
- Federal Desktop Core Configuration (FDCC)
- Security Content Automation Protocol (SCAP)
- Homeland Security Presidential Directive 12 (HSPD-12)
- Federal Identity Credentialing Committee (FICC)
For further information on FISMApedia please see our about page.
Just Added
- NIST SP 800-39 Managing Information Security Risk: Organization, Mission, and Information System View
- OMB Memorandum M-08-22, M-10-10, M-10-23, M-10-28, M-11-01, M-11-02, M-11-03, M-11-04, M-11-05 and M-11-06
- Enhanced NIST SP 800-53Ar1 Assessment Procedures combined with associated NIST SP 800-53r3 Security Controls and Enhancements
- NIST Frequently Asked Questions - Continuous Monitoring (Response to NASA Reinterpretation of Guidance)
- Updated NIST SP 800-53 Revision 3 to reflect Errata 05-01-2010.
- M-10-15 FY 2010 Reporting Instructions for the Federal Information Security Management Act and Agency Privacy Management
- NIST SP 800-37r1 Guide for Applying the Risk Management Framework to Federal Information Systems: A Security Life Cycle Approach
- Guidelines for Secure Use of Social Media by Federal Departments and Agencies 1.0
- 2,863 acronyms and abbreviations added with 7,271 definitions from 97 documents published by NIST, DoD, CNSS, GAO and other Federal agencies
- 4,235 term definitions added using 7,997 definitions from 142 documents published by NIST, DoD, CNSS, GAO and other Federal agencies
- Granular Comparison of NIST SP 800-53r2 and NIST SP 800-53r3 Control and Enhancements Changes
FISMA Arts
FISMApedia is proud to host the FISMA Arts project (also know as FISMArts). FISMArts is a project to provide educational material to those seeking to learn about the Federal IT security. It's initial focus is on the production of Mnemosyne Project media from NIST SP-800 series documents.