GovWhitePapers Logo

Sorry, your browser is not compatible with this application. Please use the latest version of Google Chrome, Mozilla Firefox, Microsoft Edge or Safari.

Risk Management / Regulatory content

Developing Supply Chain Risk Management (SCRM) Initiatives in the Federal Government

Developing Supply Chain Risk Management (SCRM)...

Supply Chain Risk Management (SCRM) plays a crucial role in safeguarding the integrity and security of supply chains within the Federal government. With increasing reliance on technology, there is a…

Learn More
The 30,000 Foot View of RMF Implementation

The 30,000 Foot View of RMF Implementation

The Risk Management Framework (RMF) is an integral component of information security management, primarily associated with NIST’s SP 800-37 guide, as a part of the broader E-Government Act of 2002,…

Learn More
Reducing Cyber Attack Risks Within Software DevelopmentLifecycle Management

Reducing Cyber Attack Risks Within Software...

Increasing cyber-attacks necessitates security improvement and vulnerability reductions to minimize the threats and provide continued government operations. This paper explores cyber risks in the software development process. It also looks…

Learn More
The Public Sector Needs to Fully Embrace Strategic Risk

The Public Sector Needs to Fully Embrace Strategic...

Over the last decade public sector agencies have expanded their risk management practices, yet they have not kept pace with the global risk landscape, which now entails a wider range…

Learn More
10Cs: A Framework for Impact Reduction of Climate Change on Children

10Cs: A Framework for Impact Reduction of Climate...

“10Cs: A Framework for Impact Reduction of Climate Change on Children” by Romex K Jha is an insightful white paper that presents a comprehensive approach to mitigate the impacts of…

Learn More
World Leaders Forecast Risk – 2023

World Leaders Forecast Risk – 2023

In January leaders of global enterprises and governments met again in Davos Switzerland to evaluate the risks facing the world. This is the largest gathering of economic, industry, social, risk…

Learn More
Artificial Intelligence Risk Management Framework (AI RMF 1.0)

Artificial Intelligence Risk Management Framework...

As directed by the National Artificial Intelligence Initiative Act of 2020 (P.L. 116-283), the goal of the Artificial Intelligence Risk Management Framework (AI RMF) is to offer a resource to…

Learn More
Engineering Trustworthy Secure Systems

Engineering Trustworthy Secure Systems

This publication describes a basis for establishing principles, concepts, activities, and tasks for engineering trustworthy secure systems. The intent of this publication is to advance systems engineering in developing trustworthy…

Learn More
Reducing Insider Risk Through Continuous Vetting

Reducing Insider Risk Through Continuous Vetting

Early detection of insider risk is a critical component to develop a proactive cybersecurity posture. Continuous vetting is key to a healthy workforce and efficient operations, but agencies often face…

Learn More
Compounding Risk – Volatility, Velocity, and Volume

Compounding Risk – Volatility, Velocity, and Volume

The year of 2022 is a compounding of risk unique in our human existence. Not only are risk more costly, but the events occur in multiples which increase the impact…

Learn More
Compounding Risk – Volatility, Velocity, and Volume!

Compounding Risk – Volatility, Velocity, and...

Compounding risk in 2022 is unique to our human existence. Not only is risk more costly, but events occur in multiples and overlapping which increased the impact and cost. Disruption…

Learn More
Open Radio Access Network Security Considerations

Open Radio Access Network Security Considerations

Mobile network operators provide cell services with a vast deployment of antennas and radios on cell towers connected to base station equipment. The base station equipment converts the wireless signals…

Learn More
Staging Cybersecurity Risks for Enterprise Risk Management and Governance Oversight

Staging Cybersecurity Risks for Enterprise Risk...

This document is the third in a series that supplements NIST Interagency/Internal Report (NISTIR) 8286, Integrating Cybersecurity and Enterprise Risk Management (ERM). This series provides additional details regarding the enterprise…

Learn More
Climate Risk Exposure: An Assessment of the Federal Government’s Financial Risks to Climate Change

Climate Risk Exposure: An Assessment of the...

The climate crisis poses a serious threat to the United States economy and human welfare, with a narrowing timeframe to invest in opportunities to avoid the most catastrophic impacts. Extreme…

Learn More
Getting Started with Cybersecurity Risk Management | Ransomware

Getting Started with Cybersecurity Risk Management...

With the threat of ransomware growing, this “quick start guide” will help organizations use the National Institute of Standards and Technology (NIST) Ransomware Risk Management: A Cybersecurity Framework Profile to…

Learn More