[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]
Subject: RE: [pbd-se] Seeking Additional Comments on the NIST Draft NISTR - MHDavis
Thanks John (all), Gail sent a great write up, and I like her input format, so I used that for my enclosed inputs. RE: Introduction, our view of the privacy state, the need for “your pet thing” and overall comments section, then answer each of the specific questions… (Seems it will make your consolidation of inputs easier too) I of course do reserve the right to change my views / update the key point that the group may want to use as I see the other inputs.. AND I get corrected were needed…;-)) (BTW.. I sent a previous email input, this is an updated version.. and I tend to be ‘high-level’ focused, so there is a LOT of that to start… 2.5 pages…. and as an SysEngr at heart, I’m quite process centric, so…) Ciao Mike Cyber security is serious business for us all – so ACT accordingly! http://www.linkedin.com/in/mikedavissd http://www.sciap.org/blog1/wp-content/uploads/CISO-Fundamentals.pdf From: pbd-se@lists.oasis-open.org [mailto:pbd-se@lists.oasis-open.org] On Behalf Of John Sabo PMRM and PbD-SE TC Members, As you know we are looking for input in order to develop comments on the draft NIST document, "Privacy Risk Management for Federal Information Systems" (NISTR 8062 DRAFT). Rick Grow of VHA will not be able to coordinate compilation of comments because of his workload, but we appreciate Rick's help in bringing this to our attention and with last week's special meeting. I will try to put together the compilation in advance of our 10AM EDT June 23 special meeting, so if you have any written comments on the draft, please email them to the list by COB Friday, and I'll put together a discussion document in advance of the meeting. As a reminder, here is the overview of the review we are doing: NIST has issued a call for comments on draft report NISTIR 8062, Privacy Risk Management for Federal Information Systemswhich introduces a privacy risk management framework for anticipating and addressing risks to individuals’ privacy. Specifically, NIST is requesting public comments on this draft to gather further input on the proposed privacy risk management framework, and expects to publish a final report based on this additional feedback. The deadline to submit comments is Monday, July 13. Here is a link to the announcement: http://csrc.nist.gov/publications/PubsDrafts.html#NIST-IR-8062. NIST specifically wants responses to the following questions: John Sabo, CISSP |
Attachment:
NIST Risk Assessment Overall Observations by Mike Davis 18 June.docx
Description: application/vnd.openxmlformats-officedocument.wordprocessingml.document
[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]