Skip to content

SP 800-37 Rev. 2, Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy

In effectNIST · NIST Special Publication · December 20, 2018

Summary

Current Risk Management Framework; adds a Prepare step, builds in privacy and supply chain risk management, and links system authorization to the Cybersecurity Framework across seven steps.

Read it on csrc.nist.gov

What FedXchange has recorded

No changes recorded. The watch records a new document and any change in its status.

Issuer
National Institute of Standards and Technology (NIST)
Type
NIST Special Publication
Number
SP 800-37 Rev. 2
Issued
December 20, 2018
Status
In effect

Still in force, possibly with amendments.

Get new governance by email

A weekly email on Fridays, an alert on the day the watch finds something new, or both. Free.

Send me

We use your address only to send what you choose, and every email has a one-click unsubscribe. Read the privacy notice.