An Arlington Brief
Overview
Arlington Security Portal
Get Access to 100 + NIST RMF security and privacy policies & procedures, programs, and plan templates.
Reporting Requirements
Per NIST SP 800-53, “Awareness and training policy and procedures address the controls in the AT family that are implemented within systems and organizations. The risk management strategy is an important factor in establishing such policies and procedures.”
Specifically, Per AT-1 of NIST SP 800-53, organizations are to “Develop, document, and disseminate…” an awareness and training policy and procedure. Additionally, within the AT family itself (i.e., AT-1 to AT-6) there are numerous controls that also require organizations to document how such controls are implemented. The keyword here is “document”, which means you need a policy and procedure for AT-1.
How to Get Started
How Arlington Can Help
Arlington Security Portal
Get Access to 100 + NIST RMF security and privacy policies & procedures, programs, and plan templates.