Planning (PL) PL-1 Security Planning Policy and Procedures (H)
The organization:
Develops, documents, and disseminates to [Assignment: organization-defined personnel or roles]:
A security planning policy that addresses purpose, scope, roles, responsibilities, management commitment, coordination among organizational entities, and compliance; and
Procedures to facilitate the implementation of the security planning policy and associated security planning controls; and
Reviews and updates the current:
Security planning policy [FedRAMP Assignment: at least annually]; and
Security planning procedures [FedRAMP Assignment: at least annually or whenever a significant change occurs].
Share with your friends: |