Skip to main content

πŸ’Ό AT-2 Literacy Training and Awareness (L)(M)(H)

  • Contextual name: πŸ’Ό AT-2 Literacy Training and Awareness (L)(M)(H)
  • ID: /frameworks/fedramp-low-security-controls/at/02
  • Located in: πŸ’Ό Awareness and Training

Description​

a. Provide security and privacy literacy training to system users (including managers, senior executives, and contractors):

  1. As part of initial training for new users and [FedRAMP Assignment: at least annually] thereafter; and

  2. When required by system changes or following [Assignment: organization-defined events];

b. Employ the following techniques to increase the security and privacy awareness of system users [Assignment: organization-defined awareness techniques];

c. Update literacy training and awareness content [FedRAMP Assignment: at least annually] and following [Assignment: organization-defined events]; and

d. Incorporate lessons learned from internal or external security or privacy incidents into literacy training and awareness techniques.

Similar​

  • Sections
    • /frameworks/nist-sp-800-53-r5/at/02
    • /frameworks/fedramp-high-security-controls/at/02
  • Internal
    • ID: dec-c-f10ee401

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό FedRAMP High Security Controls β†’ πŸ’Ό AT-2 Literacy Training and Awareness (L)(M)(H)2
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό AT-2 Literacy Training and Awareness6

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό AT-2(2) Insider Threat (L)(M)(H)