90.3k views
3 votes
What publication is the Guide for Applying the Risk Management Framework to Federal Information Systems: A Security Life Cycle Approach?

A) NIST SP 800-53
B) NIST SP 800-37
C) NIST SP 800-61
D) NIST SP 800-171

1 Answer

5 votes

Final answer:

option b,The Guide for Applying the Risk Management Framework to Federal Information Systems is known as NIST SP 800-37 and provides a structure for risk management of federal information systems.

Step-by-step explanation:

The publication titled Guide for Applying the Risk Management Framework to Federal Information Systems: A Security Life Cycle Approach is known as NIST SP 800-37. The National Institute of Standards and Technology (NIST) Special Publication (SP) 800 Series provides guidance on various aspects of information security and privacy, including the risk management framework that federal agencies and related contractors use to manage risks to their information systems. NIST SP 800-37 offers a comprehensive structure for applying the risk management framework to federal information systems.

The publication you are referring to is NIST SP 800-37, which is the Guide for Applying the Risk Management Framework to Federal Information Systems: A Security Life Cycle Approach. This publication provides guidance on how to effectively manage the risk to federal information systems by following a security life cycle approach. It outlines the steps and processes involved in implementing a risk management framework, including risk assessment, risk mitigation, and ongoing monitoring and assessment.

User MarcoSantana
by
8.2k points