12.07.2015 Views

CERT Resilience Management Model, Version 1.0

CERT Resilience Management Model, Version 1.0

CERT Resilience Management Model, Version 1.0

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Subpractices1. Document the asset changes by updating asset profiles and the assetdatabase.2. Maintain a requirement change history with rationale for performing thechanges.3. Evaluate the impact of asset changes on existing resiliencerequirements and activities and commitments for protecting andsustaining assets.Update asset resilience requirements, asset protection strategies, and plans forsustaining assets as necessary.4. Establish communication channels to ensure custodians are aware ofchanges in assets.Update service level agreements with custodians if necessary to reflect commitment tochanges.Generic Practices by GoalRefer to the Generic Goals and Practices document for generic goals and practices guidancethat applies to all process areas. The generic goals and practices descriptions here providefurther details relative to the Asset Definition and <strong>Management</strong> process area.ADM:GG1 Achieve Specific GoalsThe operational resilience management process supports and enablesachievement of the specific goals of the Asset Definition and <strong>Management</strong>process area by transforming identifiable input work products to produceidentifiable output work products.ADM:GG1.GP1 Perform Asset Definition and <strong>Management</strong> PracticesPerform the specific practices of the Asset Definition and<strong>Management</strong> process area to develop work products and provideservices to achieve the specific goals of the process area.Elaboration:Specific practices ADM:SG1.SP1 through ADM:SG3.SP2 are performed toachieve the goals of the asset definition and management process.ADM:GG2 Institutionalize Asset Definition and <strong>Management</strong> as a Managed ProcessAsset definition and management is institutionalized as a managed process.ADM:GG2.GP1 Establish Process GovernanceEstablish and maintain governance over the planning andperformance of the asset definition and management process.Refer to the Enterprise Focus process area for more information aboutproviding sponsorship and oversight to the asset definition andmanagement process.92 | CMU/SEI-2010-TR-012

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!