Sunday, August 20, 2017

RMF Training

RMF Training Introduction, DoD Risk Management Framework (RMF) 

Introduction to DoD Risk Management Framework (RMF)  Training Course


TONEX offfers many RMF Programs focusing on  DoD's Risk Management Framework principles.

Learn about DoD Risk Management Framework applied to Information Technology. RMF includes a cybersecurity risk-based approach replaces the DoD Information Assurance Certification and Accreditation Process (DIACAP). RMF  adopts cybersecurity principles instead of information assurance:


  • RMF objectives, benefits and goals
  • Risk Management Framework applied to DoD IT Authorization process
  • FISMA and NIST processes 
  • RMF key roles and responsibilities
  • Transition from the DoD C&A process (DIACAP) to RMF 
  • DoD Instruction 8510.01 (RMF for DoD IT) 
  • Overview of RMF Knowledge Service and NIST Publications


Friday, May 27, 2016

Introduction to Risk Management Framework (RMF)


RMF Training,  Introduction to Risk Management Framework (RMF)



RMF TRaining, Introduction to The Risk Management Framework (RMF) course is an intensive 2-day, hands-on training. The RMF training is led by skilled instructors and consultants in the information security (IS) industry.

Learn how security policy, principles, rules, and procedures are applied based on the principal guidelines for Department of Defense (DoD), NIST and Intelligence Community IS security.


Training Outline and Topics Include:
  • Information Security and Risk Management Framework (RMF) Foundation
  • RMF Laws, Regulations and Guidance
  • Introduction to FISMA
  • New Requirements under FISMA 2015
  • FIPS and NIST Special Publications (PUBS)
  • RMF Roles and Responsibilities
  • Risk Management Framework Steps
  • System Development Life Cycle (SDLC)
  • Transition from C&A to RMF
  • Expansion of the RMF
  • Security control Assessment Requirements
  • RMF for IT
  • Hands On, Workshops and Group Activities
  • Sample Workshops and Labs for Introduction to RMF Training
  • Key Standards and Guidelines
  • ICD 503, Risk Management Framework
  • Joint Special Access Program Implementation Guide (JSIG)