Achieving Continuous Authority to Operate (ATO)

Software Engineering Institute (SEI) Podcast Series - En podkast av Members of Technical Staff at the Software Engineering Institute

Kategorier:

Authority to Operate (ATO) is a process that certifies a system to operate for a certain period of time by evaluating the risk of the system's security controls. ATO is based on the National Institute of Standards and Technology’s Risk Management Framework (NIST 800-37). In this podcast, Shane Ficorilli and Hasan Yasar, both with the Carnegie Mellon University Software Engineering Institute, discuss continuous ATO, including challenges, the role of DevSecOps, and cultural issues that organizations must address.

Visit the podcast's native language site