Information Assurance Standards (2020)
From CyberEdWiki
The intent of the IA Standards Knowledge Unit is to provide students with an understanding of the common standards related to information assurance.
Contents
Outcomes[edit]
After completing the KU, students will be able to:
- Compare and contrast different types of standards including: laws, regulations, policies, voluntary, and framework-based standards.
- Map the processes for the creation and/or changes to different types of standards.
- Describe the impact of legal/regulatory standards on a given system.
- Describe how standards may be applied and assessed for a sub-contractor or customer.
- List and describe key provisions of common standards.
Topics[edit]
- Laws
- HIPAA
- FERPA
- Sarbanes-Oxley
- FISMA
- Data breach disclosure laws
- Regulations
- FIPS 199, 200
- NIST SP Series, including 800-53
- FDA 21 CFR parts 806 and 820
- NERC CIP
- Rainbow Series
- Commercial Standards
- PCI/DSS
- Open Standards
- OWASP
Skills[edit]
NICE Framework Categories[edit]
CSEC 2017 Categories[edit]
Specialization Areas[edit]
- Health Care Security
- Security Policy Development and Compliance
- Systems Security Engineering, Specialization Area
See also[edit]
Related Knowledge Units
Further reading[edit]
Suggested textbooks[edit]
Suggested academic readings[edit]
The Rainbow Series http://uh.edu/tech/cisre/resources/ia-resources/rainbow-series/
Sample knowledge test[edit]
Sample skills test[edit]
Sample abilities test[edit]
Additional notes or materials[edit]
Contacts[edit]
Reference ID[edit]
IAS