Skip to main content

๐Ÿ’ผ AT-3 ROLE-BASED SECURITY TRAINING

  • Contextual name: ๐Ÿ’ผ AT-3 ROLE-BASED SECURITY TRAINING
  • ID: /frameworks/nist-sp-800-53-r4/at/03
  • Located in: ๐Ÿ’ผ AT AWARENESS AND TRAINING

Descriptionโ€‹

The organization provides role-based security training to personnel with assigned security roles and responsibilities: AT-3a. Before authorizing access to the information system or performing assigned duties; AT-3b. When required by information system changes; and AT-3c. [Assignment: organization-defined frequency] thereafter.

Similarโ€‹

  • Internal
    • ID: dec-c-6e19dcd6

Similar Sections (Give Policies To)โ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ NIST CSF v1.1 โ†’ ๐Ÿ’ผ PR.AT-2: Privileged users understand their roles and responsibilities
๐Ÿ’ผ NIST CSF v1.1 โ†’ ๐Ÿ’ผ PR.AT-4: Senior executives understand their roles and responsibilities
๐Ÿ’ผ NIST CSF v1.1 โ†’ ๐Ÿ’ผ PR.AT-5: Physical and cybersecurity personnel understand their roles and responsibilities

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ AT-3 (1) ENVIRONMENTAL CONTROLS
๐Ÿ’ผ AT-3 (2) PHYSICAL SECURITY CONTROLS
๐Ÿ’ผ AT-3 (3) PRACTICAL EXERCISES
๐Ÿ’ผ AT-3 (4) SUSPICIOUS COMMUNICATIONS AND ANOMALOUS SYSTEM BEHAVIOR