1253E 附件Overlay_Template_082713_Final2

ID:27411

大小:0.13 MB

页数:9页

时间:2022-12-23

金币:10

上传者:战必胜
[Insert Title] Overlay 1 Attachment 1 to Appendix F
08/27/ 2013
[Insert Name] Overlay
1. Identification
Guidance (delete when the overlay has been completed):
Identify the overlay by providing: (i) a unique name for the overlay, (ii) a version number and
date, (iii) the version of NIST Special Publication 800-53 used to create the overlay, (iv) any
other documentation used to create the overlay, and (v) identify the events that can cause the
overlay to be modified or updated.
Example (delete when the update events have been defined):
This overlay is titled the Privacy Overlay as it identifies security control specifications required to address
privacy risks to national security systems. This is version 1.0 dated September 4, 2012.
The following documents were used to create this overlay:
National Institute of Science and Technology (NIST) Special Publication (SP) 800-53 rev3,
Recommended Security Controls for Federal Information Systems and Organizations, May 1, 2010
NIST SP 800-122, Guide to Protecting the Confidentiality of Personally Identifiable Information
(PII), April 2010
Committee on National Security Systems Instruction (CNSSI) No. 1253, Version 2, March 15, 2012
The Privacy Act of 1974, as amended (Public Law (P.L.) 93-579, as codified in 5 United States Code
(USC) 552a), December 1974
The Health Insurance Portability and Accountability Act (HIPAA) (P.L. 104-191, and associated
regulations at 45 Code of Federal Regulations (CFR) 160, 162, and 164 (2011), August 1996
The E-Government Act (includes the Federal Information Security Management Act, P.L. 107-347),
December 2002
Office of Management and Budget (OMB) Circular A-130, Appendix III, Transmittal Memorandum
#4, Management of Federal Information Resources, November 2000
OMB M-03-22, OMB Guidance for Implementing the Privacy Provisions of the
E-Government Act of 2002, September 2003
OMB M-04-04, E-Authentication Guidance, December 2003
OMB M-06-15, Safeguarding Personally Identifiable Information, May 2006
OMB M-06-16, Protection of Sensitive Agency Information, June 2006
OMB M-07-16, Safeguarding Against and Responding to the Breach of Personally Identifiable
Information, May 2007
Federal Acquisition Regulations, 45 CFR § 24.1, Protection of Individual Privacy, 2005; 45 CFR §
164, Security and Privacy
The overlay should be evaluated for revision when OMB issues new guidance that may impact designation of
privacy or HIPAA-related security controls or if any of the following are revised:
The Privacy Act of 1974, as amended (The Privacy Act)
The Health Insurance Portability and Accountability Act of 1996 (HIPAA)
E-Government Act of 2002
资源描述:

当前文档最多预览五页,下载文档查看全文

此文档下载收益归作者所有

当前文档最多预览五页,下载文档查看全文
温馨提示:
1. 部分包含数学公式或PPT动画的文件,查看预览时可能会显示错乱或异常,文件下载后无此问题,请放心下载。
2. 本文档由用户上传,版权归属用户,天天文库负责整理代发布。如果您对本文档版权有争议请及时联系客服。
3. 下载前请仔细阅读文档内容,确认文档内容符合您的需求后进行下载,若出现内容与标题不符可向本站投诉处理。
4. 下载文档时可能由于网络波动等原因无法下载或下载错误,付费完成后未能成功下载的用户请联系客服处理。
关闭