1009
Comments (40)
sorted by:
You're viewing a single comment thread. View all comments, or full comment thread.
2
Becausewhyn0t 2 points ago +2 / -0

They have to do a yearly audit I believe. At the end of the day who ever signs off on it is held responsible. From my understanding they submit these packages in a portal. Also there are owners and when risks come up they have to submit a memo identifying impact. So who is the ISSM for this government program/contract? Basically they could go to jail. How I understand government Risk Management Framework.

2
deleted 2 points ago +2 / -0