From the course: NIST 800-53r5: Introduction to Security and Privacy Controls
Unlock this course with a free trial
Join today to access over 24,900 courses taught by industry experts.
800-53 Revision 4
From the course: NIST 800-53r5: Introduction to Security and Privacy Controls
800-53 Revision 4
- All right, so for Lesson 1.5, we're going to be looking specifically at 800-53 Revision 4, which we've talked about a little bit. So for this lesson, you want to be able to define the new features in Rev 4, maybe explain why the changes were needed, and then also look at the need for assurance. This was somewhat of a new idea for Revision 4, but it was important enough that they highlight and create a whole section for it. So what changed in Revision 4? They explained a little bit more of the assumptions or spent some time explaining why they created the baselines and why they set controls per baseline. They provided a lot more guidance on how to tailor the systems, how to make them specific to your organization. And then, they've actually added privacy controls, we'll talk about that in Module 2, but there's specific ones. So if you have PII on your system, these are controls you want to implement. They worked a little bit, like I said, the naming conventions, some of the controls,…