I finally starting to understand where the AF is going with the SISSU process. Its implemented in EITDR which pretty much walks you through what is needed for DIACAP, IA Controls, FISMA requirements, IPV6 and everything else.
The system really could work if AFCA can manage it a little better. I just hope the C&A process is faster.
Ready to actually get the RMF/ISSO job?
Go from reading about the Risk Management Framework to doing it — with the full video course, the books, and a community of GRC professionals taught by Bruce Brown (CISSP, CGRC).
Get the RMF ISSO Foundations course → Browse the RMF & GRC books Join the free GRC community
Leave a Reply