This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Talk:Industry:Project Review/NIST SP 800-37r1 FPD Appendix D"

From OWASP
Jump to: navigation, search
(Installing layout of main document to structure comments)
 
(Added footnotes section.)
Line 59: Line 59:
  
 
== D.13  SECURITY CONTROL ASSESSOR ==
 
== D.13  SECURITY CONTROL ASSESSOR ==
 +
 +
 +
 +
==Footnotes==
 +
  
  
  
 
[[Category:GIC-NISTSP80037r1FPD]]
 
[[Category:GIC-NISTSP80037r1FPD]]

Revision as of 02:35, 16 December 2009

APPENDIX D

ROLES AND RESPONSIBILITIES

KEY PARTICIPANTS IN THE RISK MANAGEMENT PROCESS


D.1 HEAD OF AGENCY (CHIEF EXECUTIVE OFFICER)

D.2 RISK EXECUTIVE (FUNCTION)

D.3 CHIEF INFORMATION OFFICER

D.4 INFORMATION OWNER/STEWARD

D.5 SENIOR INFORMATION SECURITY OFFICER

D.6 AUTHORIZING OFFICIAL

D.7 AUTHORIZING OFFICIAL DESIGNATED REPRESENTATIVE

D.8 COMMON CONTROL PROVIDER

D.9 INFORMATION SYSTEM OWNER

D.10 INFORMATION SYSTEM SECURITY MANAGER/OFFICER

D.11 INFORMATION SECURITY ARCHITECT

D.12 INFORMATION SYSTEM SECURITY ENGINEER

D.13 SECURITY CONTROL ASSESSOR

Footnotes