About FISMA
Federal Information Security Management Act (FISMA) is United States federal legislation that specifies a framework of guidelines and security standards to protect government information systems. FISMA was signed into law as part of the Electronic Government Act of 2002, and the National Institute of Science and Technology (NIST) was tasked with developing a framework in support of it.
Since 2002, FISMA’s scope has widened to apply to state agencies that administer federal programs, or private businesses and service providers that hold a contract with the U.S. government.
FISMA Compliance
NIST outlines a 6 step process for FISMA compliance
At the highest level FISMA requires agencies to:
- Maintain an up-to-date inventory
- Categorize systems and data based on risk
- Create and maintain a system security plan
- Implement security controls
- Receive and maintain Certification & Accreditation
- Continuously monitor systems
Why GAI Cyber Solutions
GAI Compliance Solutions.
Vulnerability Scanning
Identify. Investigate. Remediate.