Service

Creation/Maintenance of Security Documentation and/or Procedures

Task type
Other
Readiness Level
Foundational

Description

This service includes creating, updating and/or consulting on information protection processes and procedures (based on National Institute of Standards and Technology (NIST) 800-53 and any other applicable federal guidance). Creation and maintenance of security documentation and/or procedures yields the required documentation for a new or continuously monitored system to prepare for a security control assessment.

Key deliverables include:

  • System Security Plans (SSP)
  • Audit log monitoring procedures
  • Account Management Plans (AMP)
  • Incident Response Plans (IRP)
  • Information System Contingency Plans (ISCP)

Contact

This service is offered through our federal service partner, the U.S. Department of Transportation (DOT). For more detailed information about this service, please visit the DOT's Enterprise Services Center (ESC) website. 

For inquiries about ESC offered services or if interested in purchasing services, please contact us at: esc-cyberservices@faa.gov