Introduction The SSP is both an organizational level document and a guidance pl

WRITE MY ESSAY

Introduction The SSP is both an organizational level document and a guidance plan on how a business will conduct its cybersecurity program. The SSP reflects the laws and regulations affecting the business (e.g., HIPPA) as well as how the individual parts of the program will function (e.g., use of telephone trees to communicate during a crisis). The SSP is also a living document that is reviewed periodically to ensure it meets all regulations as well as providing contact information.
As mentioned earlier, the SSP has several segments that must be filled out to ensure sufficient depth of coverage is readily available.
Activity Instructions
Use this template to create an abbreviated System Security Plan (SSP): System Security Plan Template
Writing and Submission Requirements
Minimum Length for SSP – Sections 1.0 through 6.0: For each of the SSP sections 1.0 through 8.0, you are expected to provide sufficient detail to adequately describe or explain the sections title. As an example, section 1.0, Introduction should provide a good overview of what a SSP is and what it is used for. For other sections, such as section 5.0, Security Impact, you are expected to provide a summary of what each identified plan should encompass. A minimum of 150 words but no more than 250 words is required.
Minimum Length for SSP – Appendix A: When addressing the individual Control Families in Appendix A, you must provide a minimum of 100 words to summarize what the goal and expectation of each control family. Suggested sources include NIST SP-800-171 and NIST Sp 800-53.

WRITE MY ESSAY

Leave a Comment

Scroll to Top