Skip to main content
Close Search
BAI RMF Resource Center
Menu
  • Home
  • About
    • About Us
    • Our Team
    • Testimonials
  • Classes
    • Schedule
  • Resources
    • Blog
    • Newsletter
    • Digital Badges
    • Registration Helpful Hints
    • RMF Micro Edition Videos
    • Ask Dr. RMF
    • What is RMF?
      • CMMC Publications
    • RMF Publications
    • What is CMMC?
    • What is CSF?
    • CSF Publications
    • Press
  • RDRP
    • RDRP Application
    • RDRP Directory
  • Contact
  • 🛒

    Archives of the Category Risk Management Framework

    January 17, 2023

    The Army Risk Management Council (ARMC) – Part 2 The Mission Problem

    By Philip D. Schall, Ph.D., CISSP, RDRP For those who missed my last article titled The Authorizing Official (AO) Problem & The Army Risk Management Council (ARMC), I will provide a quick summary to bring readers up to speed. It has always been my perception that a big part of…

    Continue Reading

    Post Categories: Risk Management Framework Tags:
    January 17, 2023

    Ask Dr. RMF – AO Picking on Us?

    “AO Picking on Us?” writes: Dear Dr. RMF, We have dutifully followed all the RMF process steps and created all the documentation deliverables (Security Plan, Security Assessment Report, POA&M, etc.). The package was approved by the Security Control Assessor (SCA) and sent on to the AO for final ATO approval…

    Continue Reading

    Post Categories: Dr. RMFRisk Management Framework Tags:
    January 17, 2023

    Authorizing Officials – How Many? … and Why?

    By Lon J. Berman, CISSP, RDRP DoDI 8510.01, entitled Risk Management Framework for DoD Information Technology, specifies that “each DoD Information System (IS) … must have an authorizing official (AO) responsible for authorizing the system’s operation based on achieving and maintaining an acceptable risk posture.” Within each DoD Component, the…

    Continue Reading

    Post Categories: Risk Management Framework Tags:
    October 21, 2022

    Ask Dr. RMF – AO A-Okay

    “AO A-Okay” writes: I have worked on a number of different DoD contracts over the years and I’ve noticed that some of the DoD Components (e.g., Army) have different Authorizing Officials (AOs) for each of their various major commands or programs, while other DoD Components (e.g., Navy) have a single…

    Continue Reading

    Post Categories: Dr. RMFRisk Management Framework Tags:
    October 21, 2022

    Ask Dr. RMF – Controls Freak

    “Controls Freak” asks: I’m still fairly new at the profession, but since being assigned to an RMF project by my company, I have become rather obsessed with the RMF security controls. My ambition is to memorize all the controls and control enhancements in NIST 800-53 so that if someone says…

    Continue Reading

    Post Categories: Dr. RMFRisk Management Framework Tags:
    October 21, 2022

    Ask Dr. RMF – Secret Admirer

    “Secret Admirer” writes: I’m finally ready to admit it publicly … I’m a huge admirer of Dr. RMF … Oh, how I love a man in a white coat! Beyond that, I do have an RMF-related question. I’m an application developer in my company and I just found out our…

    Continue Reading

    Post Categories: Dr. RMFRisk Management Framework Tags:
    October 21, 2022

    The Authorizing Official (AO) Problem & The Army Risk Management Council (ARMC)

    By Philip D. Schall, Ph.D., CISSP, RDRP About four or five years ago, I had a meeting with an Army organization on the topic of providing RMF training targeted specifically at Authorizing Officials (AO’s). My memory is a bit hazy, but as I recall, after two or three meetings we…

    Continue Reading

    Post Categories: Risk Management Framework Tags:
    October 21, 2022

    Confessions of a Junior RMF Consultant

    By Grace Brammer, RDRP The very first time I heard about a so-called ‘RMF process,’ I was in my freshman year of college. To anyone familiar with the industry, it may come as a shock to hear that my initial exposure to RMF left me with a mixture of emotions—mostly…

    Continue Reading

    Post Categories: Risk Management Framework Tags:
    October 21, 2022

    NIST Updates the AI RMF

    By Kathryn Daily, CISSP, CAP, RDRP Artificial intelligence (AI) is the theory and development of computer systems able to perform tasks that normally require human intelligence, such as visual perception, speech recognition, decision-making, and translation between languages. One example of AI is the use of virtual filters on our face…

    Continue Reading

    Post Categories: NIST Privacy FrameworkRisk Management Framework Tags:
    July 18, 2022

    NIST Evaluation Tool for Continuous Monitoring Programs

    By Lon J. Berman, CISSP, RDRP Information Security Continuous Monitoring (ISCM) is arguably the most important step in the Risk Management Framework (RMF), since it is here that we ensure a system’s level of risk is maintained at an acceptable level over the long term. The recent initiative to establish…

    Continue Reading

    Post Categories: NIST Privacy FrameworkRisk Management Framework Tags:
    • Previous
    • 1
    • 2
    • 3
    • 4
    • …
    • 7
    • Next

    Site Search

    Recent Posts

    • CompTIA Continuing Education – BAI Is Pre-Approved for CEUs
    • RMF Alignment with the ISC2 CGRC Exam
    • Which Security Controls Are Required? A Definitive Answer
    • RMF vs CSF: Which is better?
    • CGRC – Governance, Risk and Compliance Certification vs. Certified Authorization Professional (CAP) Update
    © 2026 BAI Information Security Consulting & Training | Privacy Policy
    Follow
                                       
    Share

    Close Menu
    • Home
    • About
      • About Us
      • Our Team
      • Testimonials
    • Classes
      • Schedule
    • Resources
      • Blog
      • Newsletter
      • Digital Badges
      • Registration Helpful Hints
      • RMF Micro Edition Videos
      • Ask Dr. RMF
      • What is RMF?
        • CMMC Publications
      • RMF Publications
      • What is CMMC?
      • What is CSF?
      • CSF Publications
      • Press
    • RDRP
      • RDRP Application
      • RDRP Directory
    • Contact
    • 🛒