From the course: NIST 800-53r5: Introduction to Security and Privacy Controls
Unlock this course with a free trial
Join today to access over 24,900 courses taught by industry experts.
Common, system, and hybrid controls
From the course: NIST 800-53r5: Introduction to Security and Privacy Controls
Common, system, and hybrid controls
- Okay, so for Lesson 2.5, let's talk about common, system, and hybrid controls. This is another important concept in 800-53 for managing risk, and... So for this lesson, you'll learn how to define common, system, hybrid controls, explain some of the examples of each one, differentiate between each one of the control types, and understand what we mean by these three different types. So here's kind of a visual to understand common controls are really inherited, and they're implemented the organization level. So, yeah, we talked about those dash one controls, a lot of times those are implemented by the organization, and they flow down through the systems. And then, the system controls are just what they say, this is at the application operating system, whatever parts of the accreditation boundary, that system is what it's implementing to control. And then you have the idea of a hybrid control, which is that overlap, so that means the system may implement some of it, I'm sorry the…
Contents
-
-
-
(Locked)
Module two overview1m 48s
-
(Locked)
Control families6m 48s
-
(Locked)
Anatomy of a control4m 57s
-
Control selection5m 22s
-
(Locked)
Common, system, and hybrid controls7m 26s
-
(Locked)
Organization defined variables2m 46s
-
(Locked)
System security plan5m 37s
-
(Locked)
Control assessment8m 11s
-
(Locked)
POA&M6m 48s
-
(Locked)
-
-