12.07.2015 Views

CERT Resilience Management Model, Version 1.0

CERT Resilience Management Model, Version 1.0

CERT Resilience Management Model, Version 1.0

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Awareness trainingA means by which the organization can highlight important behaviors and begin the process ofacculturating staff and business partners to important organizational resilience goals, objectives,and critical success factors. [OTA]Awareness training waiverSee “waiver.” [OTA]Base measuresData obtained by direct measurement. For example, the number of service continuity plansupdated in the last 12 months is a base measure. [MA]Baseline configuration itemA configuration item that serves as the baseline foundation for managing the integrity of the assetas it changes over its life cycle. [TM]Business processA series of discrete activities or tasks that contribute to the fulfillment of a service mission. (Seerelated glossary term “service.”)Business requirementA requirement that must be met to achieve business objectives. Such requirements establish thebaseline for how organizational assets are used to support business processes. [ADM]Capability levelAn indicator of achievement of process capability in a process area. A capability level is achievedby visibly and verifiably implementing the required components of a process area. (See relatedglossary terms “required component” and “process area.”)Capacity planningThe process of determining the operational demand for a technology asset over a widely variablerange of operational needs. [TM]Change control or change managementA continuous process of controlling changes to information or technology assets, relatedinfrastructure, or any aspect of services, enabling approved changes with minimum disruption.[RRM] [TM] [KIM]Collocation (also co-location or colocation)The act or result of placing or arranging together. In facilities management, collocation refers tothe grouping of facilities, the effects of which must be considered in service continuity planning.[EC]Communications (COMM)An enterprise process area in <strong>CERT</strong>-RMM. The purpose of Communications is to develop,deploy, and manage internal and external communications to support resilience activities andprocesses.216 | CMU/SEI-2010-TR-012

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!