Skip to main content

πŸ’Ό AT-3 Role-based Training (L)(M)(H)

  • Contextual name: πŸ’Ό AT-3 Role-based Training (L)(M)(H)
  • ID: /frameworks/fedramp-moderate-security-controls/at/03
  • Located in: πŸ’Ό Awareness and Training

Description​

a. Provide role-based security and privacy training to personnel with the following roles and responsibilities: [Assignment: organization-defined roles and responsibilities]:

  1. Before authorizing access to the system, information, or performing assigned duties, and [FedRAMP Assignment: at least annually] thereafter; and

  2. When required by system changes;

b. Update role-based training content [FedRAMP Assignment: at least annually] and following [Assignment: organization-defined events]; and

c. Incorporate lessons learned from internal or external security or privacy incidents into role-based training.

Similar​

  • Sections
    • /frameworks/fedramp-high-security-controls/at/03
  • Internal
    • ID: dec-c-a1a0555f

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό FedRAMP High Security Controls β†’ πŸ’Ό AT-3 Role-based Training (L)(M)(H)

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags