Search

Home > Software Engineering Institute (SEI) Podcast Series > Achieving Continuous Authority to Operate (ATO)
Podcast: Software Engineering Institute (SEI) Podcast Series
Episode:

Achieving Continuous Authority to Operate (ATO)

Category: Technology
Duration: 00:33:29
Publish Date: 2020-11-24 23:24:33
Description:

Authority to Operate (ATO) is a process that certifies a system to operate for a certain period of time by evaluating the risk of the system's security controls. ATO is based on the National Institute of Standards and Technology’s Risk Management Framework (NIST 800-37). In this podcast, Shane Ficorilli and Hasan Yasar, both with the Carnegie Mellon University Software Engineering Institute, discuss continuous ATO, including challenges, the role of DevSecOps, and cultural issues that organizations must address.

Total Play: 0