| Home > Solutions > IT GRC > IT Compliance > Regulations > FISMA |
FISMA Compliance |
 |
| Favorites |
 |
|
|
|
|
Federal Information Security Management Act (FISMA) compliance requires federal agencies to develop an information security program based on security standards developed by National Institute of Standards and Technology (NIST) and continuously review the effectiveness of their security programs.
Key Benefits of MetricStream IT GRC Solution for FISMA compliance
- Manage an inventory of information systems including computers, software, data, interfaces, servers, networks, tools, people, business processes and buildings, as well as those information systems operated by third parties.
- Categorize information and information systems according to risk levels (low, moderate or high) as per Federal Information Processing Standards (FIPS) 199.
- Establish security controls as per NIST 800-53 requirements
- Assess and manage information system risks
- Achieve system certification and accreditation
- Perform FISMA audit to ensure compliance
|