Skip Ribbon Commands
Skip to main content

Title

4.2.3 Categorize the Security of Departmental Business Activities

Predecessors

4.2.2 Identify Business Needs for Security

Priority

(2) Normal

Status

Not Started

% Complete

 

Assigned To

 

Description

The objective of this activity is to determine the security categories of departmental business activities. A
security category expresses the highest levels of expected injuries from threat compromise with respect to
the security objectives of confidentiality, integrity, and availability. Business activities are categorized by
first determining the expected injuries from IT-related threat compromise to the national and non-national
interests that the business activities serve, and then determining the level of these expected injuries.
Departments can categorize their business activities following the process specified in Section 6.
The output of this activity is a security categorization report for departmental business activities.

Start Date

 

Due Date

 

Project

ITSG 33 Departmental Security Control Profiles

Milestone

4.2 Departmental IT Security Needs & Security Controls

Cost

$0.00

Cost in Days

0.00

Process

 

VisioFlow

 

Attachments

Content Type: Task
Created at 11/25/2013 6:25 PM by System Account
Last modified at 11/25/2013 6:25 PM by System Account