August 2013
Intermediate to advanced
350 pages
10h 52m
English
FISMA requires that all system security controls undergo testing. Testing the security controls should be planned in advance and should be performed by an independent third-party assessor. All components of the system that will be tested should be described in the Security Assessment Plan. A Security Assessment Plan should include a Rules of Engagement (RoE). RoE is a document designed to describe proper notifications and disclosures between the owner of a tested system and an independent assessor.
SP 800-53A; Security testing; Independent assessor; Third party; Rules of Engagement; RoE; Limitation of Liability; Testing; ST&E; Security Testing and Evaluation
Distrust and caution are the ...
Read now
Unlock full access