ConvoCourses

Convocourses Podcast: Plan of Action and Milestone (POAM content)


Listen Later

To download the POAM in this podcast go to convocourses.com

 

A Plan of Action and Milestones (POA&M) is a document that identifies tasks needing to be accomplished to remediate or mitigate risks to a system. It is a requirement under NIST 800-53, which is a guideline for federal agencies and contractors to follow when managing their information security programs. A NIST 800 POA&M, therefore, is a POA&M that is developed in compliance with NIST 800-53 standards.

The NIST 800 POA&M details the resources required to accomplish the elements of the plan, any milestones for meeting the tasks, and scheduled milestone completion dates [1]. The document is continuously updated as progress is made towards remediation, making it a living, dynamic document [2]. The POA&M is a critical tool for anyone responsible for tracking and reporting compliance issues or risks identified for a system [3].

NIST 800-53r5 recommends the use of security automation software to support the POA&M process. This software can help with tracking POA&M items and milestones, and integrate with ticketing systems for streamlined management of remediation activities [2].

 

 

 

...more
View all episodesView all episodes
Download on the App Store

ConvoCoursesBy Bruce Brown

  • 5
  • 5
  • 5
  • 5
  • 5

5

4 ratings


More shows like ConvoCourses

View all
Security Now (Audio) by TWiT

Security Now (Audio)

2,002 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

638 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,020 Listeners

Smashing Security by Graham Cluley

Smashing Security

321 Listeners

Click Here by Recorded Future News

Click Here

415 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,007 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

178 Listeners

Hacking Humans by N2K Networks

Hacking Humans

314 Listeners

Cyber Work by Infosec

Cyber Work

101 Listeners

AWS Podcast by Amazon Web Services

AWS Podcast

202 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

136 Listeners

CISO Tradecraft® by G Mark Hardy & Ross Young

CISO Tradecraft®

48 Listeners

The TechTual Talk by Henri Davis, The Radcast Network

The TechTual Talk

41 Listeners

Bloomberg Tech by Bloomberg

Bloomberg Tech

60 Listeners

CISSP Cyber Training Podcast - CISSP Training Program by Shon Gerber, vCISO, CISSP, Cybersecurity Consultant and Entrepreneur

CISSP Cyber Training Podcast - CISSP Training Program

32 Listeners