1/5
Looks like no tags are added yet.
Name | Mastery | Learn | Test | Matching | Spaced | Call with Kai |
|---|
No study sessions yet.
What is the purpose/goal of MA?
Process to protect/engage functionality and resilience of assets critical to mission essential functions within the DoD.
Four pillars of DoD MA?
1) ID and prioritize critical missions, capabilities, functions, systems, and supporting assets
2) Develop and implement a comprehensive and integrated MA risk management construct
3) Use risk informed decision making to optimize risk reduction solutions
4) Partner with non-DoD entities; as appropriate/permitted by law, to reduce risk
3 components of NIST CSF
1) Profiles —> roadmap
2) Tiers —> degrees of risks
3) Cores —> Six high level functions on how to reduce risk
3 Subcomponents of NIST CSF Tiers
1) Risk management process
2) Integrated risk management program
3) External participation
4 Inputs to Cybersecurity profile
1) Mission objectives
2) Stakeholders expectations
3) Threat environment
4) Requirement and leading practices
Six core functions NIST CSF
Govern
Identify
Protect
Detect
Respond
Recover