Organizational Information Security Continuous Monitoring

March 4, 2018

You are here:
< Back

Ongoing monitoring sufficient to ensure and assure effectiveness of security controls related to systems, networks, and cyberspace, by assessing security control implementation and organizational security status in accordance with organizational risk tolerance – and within a reporting structure designed to make real-time, data-driven risk management decisions.
SOURCE: SP 800-137