Skip to main content

๐Ÿ’ผ AT-2 Literacy Training and Awareness (L)(M)(H)

  • Contextual name: ๐Ÿ’ผ AT-2 Literacy Training and Awareness (L)(M)(H)
  • ID: /frameworks/fedramp-low-security-controls/at/02
  • Located in: ๐Ÿ’ผ Awareness and Training

Descriptionโ€‹

a. Provide security and privacy literacy training to system users (including managers, senior executives, and contractors):

  1. As part of initial training for new users and [FedRAMP Assignment: at least annually] thereafter; and

  2. When required by system changes or following [Assignment: organization-defined events];

b. Employ the following techniques to increase the security and privacy awareness of system users [Assignment: organization-defined awareness techniques];

c. Update literacy training and awareness content [FedRAMP Assignment: at least annually] and following [Assignment: organization-defined events]; and

d. Incorporate lessons learned from internal or external security or privacy incidents into literacy training and awareness techniques.

Similarโ€‹

  • Sections
    • /frameworks/nist-sp-800-53-r5/at/02
    • /frameworks/fedramp-high-security-controls/at/02
  • Internal
    • ID: dec-c-f10ee401

Similar Sections (Take Policies From)โ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ FedRAMP High Security Controls โ†’ ๐Ÿ’ผ AT-2 Literacy Training and Awareness (L)(M)(H)2
๐Ÿ’ผ NIST SP 800-53 Revision 5 โ†’ ๐Ÿ’ผ AT-2 Literacy Training and Awareness6

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ AT-2(2) Insider Threat (L)(M)(H)