Preface
Welcome! Let’s face it, if you’re reading this book, you probably weren’t too excited about the task you may have been given; implementing the NIST Risk Management Framework (RMF) in your organization is truly a difficult undertaking and not one everyone would enjoy. Even for me, sometimes cracking open and browsing a NIST Special Publication is something that can put me to sleep.
That’s why I wrote this book. This book introduces risk management and the NIST RMF. I’ve attempted to break down the framework into easy-to-understand topics. This book will not go into every detail, or provide every possible way you could implement the framework; to do so would cover many volumes and be very technology stack and industry dependent. However, once you’ve read this book, you should have a great understanding of the framework from a big-picture perspective, and know where to focus your attention to successfully implement the NIST RMF in your organization.