SP 800-39, Managing Information Security Risk: Organization, Mission, and Information System View
In effectNIST · NIST Special Publication · March 2011
Summary
Describes how agencies manage information security risk at three levels, the organization, its missions and business processes, and its systems, including setting a risk strategy, risk tolerance, and governance.
What FedXchange has recorded
No changes recorded. The watch records a new document and any change in its status.
- Issuer
- National Institute of Standards and Technology (NIST)
- Type
- NIST Special Publication
- Number
- SP 800-39
- Issued
- March 2011
- Status
- In effect
Still in force, possibly with amendments.
Get new governance by email
A weekly email on Fridays, an alert on the day the watch finds something new, or both. Free.