Justin Endres’ Post

View profile for Justin Endres

CRO @ Seclore | Zero Trust Data Centric Security | 2024 & 2025 Channel Chief | Board Advisor

Once NIST SP 800-171 and SP 800-171A are published this month, federal agencies are on the clock to start using Revision 3 (outlined in the Office of Management and Budget (OMB) Circular No. A-130, “Managing Information as a Strategic Resource.” The policy states on page I-16: “For legacy information systems, agencies are expected to meet the requirements of, and be in compliance with, NIST standards and guidelines within one year of their respective publication dates unless otherwise directed by OMB. The one-year compliance date for revisions to NIST publications applies only to new or updated material in the publications. For information systems under development or for legacy systems undergoing significant changes, agencies are expected to meet the requirements of, and be in compliance with, NIST standards and guidelines immediately upon deployment of the systems.” Visibility of how your sensitive data is being handled through it's lifecycle will.be essential; even when it's sitting somewhere within your supply chain. Seclore Data Centric Security is a strong part of NIST and achieving zero trust. https://lnkd.in/efiMejPG #NIST800171 #SecurityRequirements #NIST800171A #AssessmentProcedures #CUI #OMBCircularA130

Policies & Priorities

Policies & Priorities

cio.gov

To view or add a comment, sign in

Explore topics