Seven-step process for managing information security and privacy risk for federal systems — and the cyber lingua-franca for everyone else.
Open the full NIST RMF — NIST Risk Management Framework (SP 800-37) page