Copies of the presentation slides can be downloaded from NOV 2022 FutureFeed User Presentation.pdf
Register for our 15 Minutes with FutureFeed sessions here.
View upcoming FutureFeed and industry events here.
Webinar Description
In this month's session we addressed:
- Industry Updates
- DoD Quiet Period
- NIST Update
- Reading Between the Lines
- New Features
- Teams
- Shared Responsibility Models (SRM)
- Discussions
- Reminders
- Upcoming FutureFeed and Industry Events
- CMMC Implementer's Conference - Jan. 18-20, San Diego
- 15 Minutes with FutureFeed
All prior webinar recordings are available on our support site.
Speakers:
Mark Berman - CEO
Jim Goepel - Director of Education and Content, General Counsel
Webinar Index
01:16 Agenda
01:48 Industry Update
- DoD Enters Quiet Period (2:06)
- Rule(s) have been submitted to OIRA for review
- Will go to Congress for review as well
- Will likely impact both Title 48 of the CFR (FAR/DFARS) and Title 32 of the CFR (ISOO/CUI program)
- NIST 800-171 Update (7:28)
- NIST is revising 800-171 and asked for public comments on Rev 2
- On Nov. 1, NIST released an analysis of the public comments
- Should clarify whether NFO controls are required
- Tighten correlation with NIST SP 800-53
- NIST is researching FIPS Validation requirements (3.13.11) and FIPS process to build better guidance
- Initial public draft of Rev 3 planned for late spring 2023
- No published ETA for final version
- Reading Between the Lines (10:38)
- FAR Part 40 is being created to standardize cybersecurity supply chain risk management across the government (See DFARS case 2022-010)
- Updates to CUI program likely coming as part of DoD’s efforts
- NIST Updating 800-171
- Predictions
- Planning for the Future (14:41)
- Finish adopting the NIST SP 800-171 controls ASAP
- Review the 93 “Non-federal Organization” (“NFO”) controls
- Most aren’t hard! (i.e., they are likely to be adopted)
- Refer to NIST SP 800-53 rev. 4 for Details
- Create an implementation plan for any gaps
- Start with creating policies and procedures
- Ensure you have accountability, including senior management
- Create and maintain an audit trail
16:44 New and Upcoming Features
- Shared Responsibility Models (SRM) (19:01)
- Teams (22:32)
- Teams playing a bigger role in FutureFeed
- Track team leader and team members
- Used in responsibility
- Discussions (26:49)
- Hold convenient, focused discussions with other users within FutureFeed
- Share questions, observations, and findings to streamline the assessment prep and assessment processes
- Make individual discussions visible to your assessment team (and vice-versa)
34:12 Reminders
- Upcoming FutureFeed and Industry Events
- DFARS/FutureFeed Live Demo - November 4, 2022
- CyberAB CMMC Conference - Nov. 9, Tysons Corner, VA
-
See the full list at https://futurefeed.co/events/
- CMMC Implementer's Conference - Jan. 18-20, San Diego
- 15 Minutes with FutureFeed
- Mondays at 1:30 PM Eastern
- Open session – you control the questions
Questions? Email support@futurefeed.co
Comments
0 comments
Please sign in to leave a comment.