Skip to content

SP 800-39, Managing Information Security Risk: Organization, Mission, and Information System View

In effectNIST · NIST Special Publication · March 2011

Summary

Describes how agencies manage information security risk at three levels, the organization, its missions and business processes, and its systems, including setting a risk strategy, risk tolerance, and governance.

Read it on csrc.nist.gov

What FedXchange has recorded

No changes recorded. The watch records a new document and any change in its status.

Issuer
National Institute of Standards and Technology (NIST)
Type
NIST Special Publication
Number
SP 800-39
Issued
March 2011
Status
In effect

Still in force, possibly with amendments.

Get new governance by email

A weekly email on Fridays, an alert on the day the watch finds something new, or both. Free.

Send me

We use your address only to send what you choose, and every email has a one-click unsubscribe. Read the privacy notice.