Add description, images, menus and links to your mega menu
A column with no settings can be used as a spacer
Link to your collections, sales and even external links
Add up to five columns
Add description, images, menus and links to your mega menu
A column with no settings can be used as a spacer
Link to your collections, sales and even external links
Add up to five columns
October 09, 2023 3 min read
From a National Institute of Standards and Technology (NIST) perspective, continuous monitoring refers to the ongoing process of observing, assessing, and tracking security-related activities and events within an information system or organization.
The goal of continuous monitoring is to maintain an accurate and up-to-date understanding of an organization's security posture and to promptly detect and respond to security threats and vulnerabilities. NIST provides guidelines and recommendations for implementing continuous monitoring as part of its broader framework for information security.
Key aspects and principles of continuous monitoring according to NIST:
NIST's guidance on continuous monitoring can be found in publications such as NIST Special Publication 800-137, "Information Security Continuous Monitoring (ISCM) for Federal Information Systems and Organizations." These guidelines are particularly relevant for federal agencies and organizations that need to adhere to NIST's security standards and requirements.
Implementing continuous monitoring practices helps organizations stay vigilant against evolving cybersecurity threats and maintain a proactive approach to information security.
Reporting Requirements
Specifically, Per CA-7 of NIST SP 800-53, organizations are to “Develop a system-level continuous monitoring strategy and implement continuous monitoring in accordance with the organization-level continuous monitoring strategy…”. The keyword here is “develop”, which means you need a program in place for CA-7.
How to Get Started
Start by downloading our world-class NIST RMF Security and Privacy Policies and Procedures templates at the Arlington Security Portal (ASP), which includes access to our continuous monitoring program template.
How Arlington Can Help
We have years of experience working within the broader federal agency apparatus in helping federal contractors develop high-quality, well-written, policies and procedures and additional NIST RMF information security and privacy materials. Our NIST RMF information security and privacy policies, procedures, programs, and plans have been used by thousands of federal contractors in helping organizations develop customized documentation for their growing security and compliance needs.
About Arlington
We are Arlington, a team of innovative, solution-oriented, highly agile, and well-versed professionals with decades of experience in working with America’s defense industry. From emerging cybersecurity regulations to helping our clients solve complex security & compliance solutions – and so much more – you can trust Arlington, the firm that’s Dedicated to Defense®. Learn more at arlingtonintel.com.