<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://connect.educause.edu" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>EDUCAUSE | EDUCAUSE CONNECT - Standards for Security Categorization of Federal Information and Information Systems (FIPS-199) - Comments</title>
 <link>http://connect.educause.edu/display/46333</link>
 <image>
    <title>EDUCAUSE CONNECT</title> 
    <link>http://connect.educause.edu/display/46333</link> 
    <url>http://connect.educause.edu/educause/images/e_rss.png</url> 
 </image>
 <description>Comments for &quot;Standards for Security Categorization of Federal Information and Information Systems (FIPS-199)&quot;</description>
 <language>en</language>

<item>
 <title>Standards for Security Categorization of Federal Information and Information Systems (FIPS-199)</title>
 <link>http://connect.educause.edu/display/46333</link>
 <description>&lt;p&gt;The E-Government Act of 2002 (Public Law 107-347),  recognized the importance of information security to the economic and national security interests of the United States. Title III of the E-Government Act, entitled the Federal Information Security Management Act of 2002 (FISMA), tasked NIST with responsibilities for standards and guidelines, including the development of:&lt;br /&gt;- Standards to be used by all federal agencies to categorize all information and information systems collected or maintained by or on behalf of each agency based on the objectives of providing appropriate levels of information security according to a range of risk levels;&lt;br /&gt;- Guidelines recommending the types of information and information systems to be included in each category; and&lt;br /&gt;- Minimum information security requirements (i.e., management, operational, and technical controls), for information and information systems in each such category.&lt;br /&gt;FIPS Publication 199 addresses the first task cited -- to develop standards for categorizing information and information systems. Security categorization standards for information and information systems provide a common framework and understanding for expressing security that, for the federal government, promotes: (i) effective management and oversight of information security programs, including the coordination of information security efforts throughout the civilian, national security, emergency preparedness, homeland security, and law enforcement communities; and (ii) consistent reporting to the Office of Management and Budget (OMB) and Congress on the adequacy and effectiveness of information security policies, procedures, and practices. Subsequent NIST standards and guidelines will address the second and third tasks cited.&lt;/p&gt;</description>
 <comments>http://connect.educause.edu/display/46333#comments</comments>
 <enclosure url="http://csrc.nist.gov/publications/fips/fips199/FIPS-PUB-199-final.pdf" length="" type="application/pdf" />
 <category domain="http://connect.educause.edu/tag/Cybersecurity+Policy/633">Cybersecurity Policy</category>
 <category domain="http://connect.educause.edu/tag/Data+Classification+Policies/5334">Data Classification Policies</category>
 <category domain="http://connect.educause.edu/tag/Data+Security/256">Data Security</category>
 <category domain="http://connect.educause.edu/tag/National+Institute+of+Standards+and+Technology/5819">National Institute of Standards and Technology</category>
 <category domain="http://connect.educause.edu/tag/Security+Policies/254">Security Policies</category>
 <category domain="http://connect.educause.edu/tag/security+standards/5527">security standards</category>
 <category domain="http://connect.educause.edu/tag/Contributed+by+Organizations+or+Campuses/4928">Contributed by Organizations or Campuses</category>
 <category domain="http://connect.educause.edu/tag/Government+Documents%2C+Laws%2C+Testimonies+or+Reports/4979">Government Documents, Laws, Testimonies or Reports</category>
 <pubDate>Mon, 03 Mar 2008 13:55:22 -0600</pubDate>
 <dc:creator>ckeller</dc:creator>
 <guid isPermaLink="false">46333 at http://connect.educause.edu</guid>
</item>
</channel>
</rss>
