Educause Security Discussion mailing list archives

Re: New VA FISMA Requirements for PIs in Research Institutions


From: "St Clair, Jim" <Jim.StClair () GT COM>
Date: Tue, 13 Mar 2007 09:52:29 -0400

I think the conference is a great idea. I would be happy to volunteer to
present more background on FISMA and System Accreditation, if desired.

 

James A.St.Clair, CISM 
Sr. Manager 
Global Public Sector 
Grant Thornton LLP 
(703) 637-3078 (office) 
(703) 727-6332 (mobile) 
(703) 837-4455 (fax) 

________________________________

From: Sadler, Connie [mailto:Connie_Sadler () BROWN EDU] 
Sent: Monday, March 12, 2007 4:31 PM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: New VA FISMA Requirements for PIs in Research Institutions

 

 

For those of you who do research with the Veterans Administration, have
any of you been able to gather specific requirements for the very recent
requirements to comply with FISMA? As some of you may know, we have been
given requirements, and not much time to become compliant!

I have some reference documents:
http://www.research.va.gov/resources/policies/docs/PI-Certification.pdf
and http://csrc.nist.gov/policies/FISMA-final.pdf, and
http://csrc.nist.gov/publications/nistpubs/800-37/SP800-37-final.pdf.

If some of you are interested, this might be something that we could
organize an audio telecon around. 

Connie J. Sadler, CM, CISSP, CISM, GIAC GSLC
IT Security Officer, Brown University 
Campus Box 1885, Providence, RI 02912
Connie_Sadler () Brown edu <mailto:Connie_Sadler () Brown edu> ,  Office:
401-863-7266 
PGP Key: http://pgp.mit.edu:11371/pks/lookup?op=get&search=0x91E38EFB
<http://pgp.mit.edu:11371/pks/lookup?op=get&search=0x91E38EFB> 
PGP Fingerprint: DA5F ED84 06D7 1635 4BC7 560D 9A07 80BA 91E3 8EFB
 

--------------------------------------------------------


In accordance with applicable professional regulations, please understand that, unless expressly stated otherwise, any 
written advice contained in, forwarded with, or attached to this e-mail is not intended or written by Grant Thornton 
LLP to be used, and cannot be used, by any person for the purpose of avoiding any penalties that may be imposed under 
the Internal Revenue Code. 

--------------------------------------------------------

 This e-mail is intended solely for the person or entity to which it is addressed and may contain confidential and/or 
privileged information.  Any review, dissemination, copying, printing or other use of this e-mail by persons or 
entities other than the addressee is prohibited.  If you have received this e-mail in error, please contact the sender 
immediately and delete the material from any computer.

Current thread: