Looking for a little help with self-assessment of 800-53r5

old.reddit.com / @/u/ihatehawk, https://old.reddit.com/user/ihatehawk

I’m sys admin with very limited experience in information security/documentation. I was tasked to self-assess my company controls and document my findings. Is there an online resource that provide guidance to do this?

I found the official assessment guide 800-53A and was thinking of creating an interview template to review specific controls with the system admin/owner. Once I have the info and evidence, update the 800-53A with my findings. Is this the correct approach?

TIA

submitted by /u/ihatehawk
[link] [comments]

published 7 months ago




See all items from the same source