Breadcrumb
  1. Training
  2. Education & Training Catalog
  3. Test Pass Academy, LLC.
  4. Risk Management Framework (RMF)

Risk Management Framework (RMF)

This 3-Day Risk Management Framework (RMF) course is actually a dual RMF and (ISC)2 CGRC course that will prepares students to pass the CGRC Exam through a combination of lecture, review of the entire 7 domains, drill sessions, extensive mentoring, practice questions and answer sessions all topped off with a full practice exam. Our instructors don't just teach from a textbook, they design, write and update our curriculum. Our materials are always up to date and synchronized with the latest exam objectives. Our instructors are constantly updating our curriculum to match any change that may arise. Our bootcamp will provide the right amount of training needed for you to Test with Confidence.

Provider Information

More courses from this provider:
Contact Information

Test Pass Academy LLC
621 NW 53rd Street
Suite 125
Boca Raton, FL 33487

Course Overview

Overall Proficiency Level
2 - Intermediate
Course Catalog Number
RMF
Course Prerequisites
  1. Although not required the CEH certification is strongly recommended.
  2. Strong knowledge of TCP IP.
  3. Information systems and security background.
  4. Student's should have a minimum of 12 months of experience in networking technologies
Training Purpose
Management Development
Specific Audience
Federal Employee
Contractor
Academia
General Public
Delivery Method
Classroom
Online, Instructor-Led
Course Locations

Boca Raton, FL

San Diego, CA

Colorado Springs, CO

Columbia, MD

Los Angeles, CA

Dulles, VA

Huntsville, AL

  • Classroom
  • Online, Instructor-Led

Learning Objectives

  • DoD and Intelligence Community specific guidelines, Key concepts including assurance, assessment, authorization, Security controls
  • Cybersecurity Policy Regulations and Framework Security laws, policy, and regulations, DIACAP to RMF transition, ICD 503, CNSSI-1253, SDLC and RMF, Documents for cyber security guidance
  • RMF Roles and Responsibilities, Tasks and responsibilities for RMF roles, DoD RMF roles
  • Risk Analysis Process DoD organization-wide risk management, RMF steps and tasks, RMF vs. C&A
  • Categorize Step 1 key references Sample SSP: Security Categorization, Information System Description, Information System Registration Registering a DoD system
  • Select Step 2 key references: Common Control Identification, Select Security Controls, Monitoring Strategy, Security Plan Approval, Select Security Controls
  • Implement Step 3 key references: Security Control Implementation, Security Control Documentation, Implement Security Controls
  • Assess Step 4 key references About Assessment: Assessment Preparation, Security Control Assessment, Security Assessment Report, Remediation Actions, Assessment Preparation
  • Authorize Step 5 key references: Plan of Action and Milestones, Security Authorization Package, Risk Determination, Risk Acceptance, Authorizing Information Systems
  • Monitor Step 6 key references: Information System and Environment Changes, Ongoing Security Control Assessments, Ongoing Remediation Actions, Key Updates, Security Status Reporting, Ongoing Risk Determination and Acceptance, Information System Removal and Decommissioning Continuous Monitoring Security Automation, Monitoring Security Controls
  • RMF for DoD and Intelligence Community, eMASS, RMF Knowledge Service, DoD 8510.01, DFAR 252.204-7012, ICD 503, CNSSI-1253, FedRAMP, RMF within DoD and IC process review

Framework Connections

The materials within this course focus on the NICE Framework Task, Knowledge, and Skill statements identified within the indicated NICE Framework component(s):

Feedback

If you would like to provide feedback on this course, please e-mail the NICCS team at NICCS@mail.cisa.dhs.gov(link sends email). Please keep in mind that NICCS does not own this course or accept payment for course entry. If you have questions related to the details of this course, such as cost, prerequisites, how to register, etc., please contact the course training provider directly. You can find course training provider contact information by following the link that says “Visit course page for more information...” on this page.

Last Published Date:

You have been selected to participate in a brief survey about your experience today with National Initiative for Cybersecurity Careers and Studies.

Would you like to participate in our survey?

If you accept you will be leaving the National Initiative for Cybersecurity Careers and Studies website and going to a third party site.
That site may have different privacy, security and accessibility policies than the National Initiative for Cybersecurity Careers and Studies site.
National Initiative for Cybersecurity Careers and Studies does not endorse any commercial products, services, programs or content on the third party website.
Thank you for visiting our site. We hope your visit was informative and enjoyable.