Implementing 3.1.2 from NIST SP 800-171 Rev 2

August 22, 2024
If 3.1.1 authorizes access to the system, 3.1.2 authorizes permissions within the system. The rules of chess, for example, limit the types of functions allowed for each piece.
Read More
10 min read

Implementing 3.1.22 from NIST SP 800-171 Rev 2

August 30, 2024
Organizations should prevent the release of nonpublic information on systems accessible to the public. Systems accessible to the public include websites and social media.
Read More
10 min read

Implementing 3.5.1 from NIST SP 800-171 Rev 2

September 6, 2024
Identifying accounts and devices is foundational to creating a secure and accountable system. Accounts may have assignments to people and non-person entities. Establishing identity management policies and procedures supports the authorization and auditing functions.
Read More
10 min read

Start your GRC journey today

Discover how K2 GRC can simplify compliance and enhance your organization's governance and risk management.