Add Dictionary Terms
Project 4191 –
Task 310057
Instructions: Add the term "FedRAMP Continuous Monitoring Strategy Guide" to the dictionary | Task Description: Add the term "FedRAMP Continuous Monitoring Strategy Guide" to the dictionary | Authority Document URL: Website URI Document URI |
From Citation: Section 5.3.2.1 ΒΆ 1 – The FedRAMP Continuous Monitoring Guide defines a significant change as a change to the scope of an approved PA or an impact to the authorization boundary of the CSO. The CSP will follow procedures defined in the FedRAMP Continuous Monitoring Strategy Guide by submitting a FedRAMP Significant Change Security Impact Analysis Form56 to the FedRAMP PMO. The review of the security implications of significant changes will be performed at multiple layers, as reflected in Figure 7. The planned change will be reviewed by the FedRAMP ISSO and/or JAB Technical Representatives (TRs), and then forwarded to the JAB for approval. Simultaneously the DoD JAB TR will notify DISA, who will in turn notify all Mission Owners utilizing that CSO, the DISA AO, and the CSSP entities as defined in Section 6, Cyberspace Defense and Incident Response. During FedRAMP ISSO review, the DoD JAB TR will collect comments from DoD stake holders and inform the FedRAMP ISSO if planned changes will adversely affect the security of the information hosted by the CSO for DoD cloud customers. DoD may communicate directly with the CSP and their 3PAO regarding change approval or concerns over the impact on DoD's FedRAMP+ C/CEs. Term: FedRAMP Continuous Monitoring Strategy Guide Definition: This document provides guidance on continuous monitoring and ongoing authorization in support of maintaining a security authorization that meets the FedRAMP requirements. Definition Type: Record Example
Sources:
|
Why are you sending the task back? (optional)