Fiscal Year 2022 Evaluation of the U.S. AbilityOne Commission’s Compliance with the Federal Information Security Modernization Act (FISMA)
Report Information
Recommendations
The Commission IT staff evaluate the Supply Chain policy against the requirements of NIST 800-53 Rev. 5 to ensure compliance for each of the individual controls.
Ensure that a BIA is prepared, completed and approved. After the initial BIA is put in place, it should be updated whenever significant updates to the GSS are implemented.