nist policy mapped to 800-53-800-53a-controls-and-objectives (legal size)

1
Program Management and Privacy Controls apply to all systems. Control overlays apply to a specific environment (i.e., FedRAMP Cloud) -01 Family Name ##-ID NIST SP 800-53 Policy & Procedures (mapped to NIST documents) NIST 800-100 NIST 800-012 NIST 800-016 NIST 800-050 FIPS 201 NIST 800-063 NIST 800-073 NIST 800-076 NIST 800-078 NIST 800-018 NIST 800-037 NIST 800-053A NIST 800-030 NIST 800-034 NIST 800-061 NIST 800-083 Grand Total PR1 Rank l i n k e Awareness and Training AT-01 Security Awareness and Training Policy and Procedures 1 1 1 1 4 1 Identification and Authentication IA-01 Identification and Authentication Policy and Procedures 1 1 1 1 1 1 1 7 2 Access Control AC-01 Access Control Policy and Procedures 1 1 2 3 Audit and Accountability AU-01 Audit and Accountability Policy and Procedures 1 1 2 4 Configuration Management CM-01 Configuration Management Policy and Procedures 1 1 2 5 System and Services Acquisition SA-01 System and Services Acquisition Policy and Procedures 1 1 2 6 Maintenance MA-01 System Maintenance Policy and Procedures 1 1 2 7 Media Protection MP-01 Media Protection Policy and Procedures 1 1 2 8 System and Information Integrity SI-01 System and Information Integrity Policy and Procedures 1 1 2 9 System and Communications Protection SC-01 System and Communications Protection Policy and Procedures 1 1 2 10 Planning PL-01 Security Planning Policy and Procedures 1 1 1 3 11 Security Assessment and Authorization CA-01 Security Assessment and Authorization Policies and Procedures 1 1 1 1 4 12 Risk Assessment RA-01 Risk Assessment Policy and Procedures 1 1 1 3 13 Contingency Planning CP-01 Contingency Planning Policy and Procedures 1 1 1 3 14 Incident Response IR-01 Incident Response Policy and Procedures 1 1 1 1 4 15 Personnel Security PS-01 Personnel Security Policy and Procedures 1 1 2 16 Physical and Environmental Protection PE-01 Physical and Environmental Protection Policy and Procedures 1 1 2 17 Grand Total 17 17 1 1 1 1 1 1 1 1 1 1 1 1 1 1 48 e d i n . c o m / i n / j d e r i e n z o

Upload: james-w-de-rienzo

Post on 26-Jan-2017

186 views

Category:

Documents


2 download

TRANSCRIPT

Page 1: NIST Policy Mapped to 800-53-800-53A-controls-and-objectives (Legal Size)

Program Management and Privacy Controls apply to all systems. Control overlays apply to a specific environment (i.e., FedRAMP Cloud) -01

Family Name ##-ID NIST SP 800-53 Policy & Procedures (mapped to NIST documents) NIST

800

-100

NIST

800

-012

NIST

800

-016

NIST

800

-050

FIPS

201

NIST

800

-063

NIST

800

-073

NIST

800

-076

NIST

800

-078

NIST

800

-018

NIST

800

-037

NIST

800

-053

ANI

ST 8

00-0

30NI

ST 8

00-0

34NI

ST 8

00-0

61NI

ST 8

00-0

83Gr

and

Tota

lPR

1 Ra

nk

linke Awareness and Training AT-01 Security Awareness and Training Policy and Procedures 1 1 1 1 4 1

Identification and Authentication IA-01 Identification and Authentication Policy and Procedures 1 1 1 1 1 1 1 7 2Access Control AC-01 Access Control Policy and Procedures 1 1 2 3Audit and Accountability AU-01 Audit and Accountability Policy and Procedures 1 1 2 4Configuration Management CM-01 Configuration Management Policy and Procedures 1 1 2 5System and Services Acquisition SA-01 System and Services Acquisition Policy and Procedures 1 1 2 6Maintenance MA-01 System Maintenance Policy and Procedures 1 1 2 7Media Protection MP-01 Media Protection Policy and Procedures 1 1 2 8System and Information Integrity SI-01 System and Information Integrity Policy and Procedures 1 1 2 9System and Communications Protection SC-01 System and Communications Protection Policy and Procedures 1 1 2 10Planning PL-01 Security Planning Policy and Procedures 1 1 1 3 11Security Assessment and Authorization CA-01 Security Assessment and Authorization Policies and Procedures 1 1 1 1 4 12Risk Assessment RA-01 Risk Assessment Policy and Procedures 1 1 1 3 13Contingency Planning CP-01 Contingency Planning Policy and Procedures 1 1 1 3 14Incident Response IR-01 Incident Response Policy and Procedures 1 1 1 1 4 15Personnel Security PS-01 Personnel Security Policy and Procedures 1 1 2 16Physical and Environmental Protection PE-01 Physical and Environmental Protection Policy and Procedures 1 1 2 17Grand Total 17 17 1 1 1 1 1 1 1 1 1 1 1 1 1 1 48

edin.com/in/jderienzo