Regulatory Providers

DISA
A Combat Support Agency, engineers and provides command and control capabilities and enterprise infrastructure to continuously operate and assure a global net-centric enterprise in direct support to joint warfighters, National level leaders, and other mission and coalition partners across the full spectrum of operations.
DOD
The mission of the Department of Defense is to provide the military forces needed to deter war and to protect the security of our country. This mission is consistent with the DoD Principles of Information, which outline the Department's policy for providing information to military members, DoD civilians, military family members, the American public, the Congress, and the news media. The information you find here is cleared for public release in accordance with applicable DoD policies.
FTC
The Federal Trade Commision (FTC) issued the Financial Modernization Act of 1999, also known as the "Gramm-Leach-Bliley Act" or GLB Act, includes provisions to protect consumers' personal financial information held by financial institutions. There are three principal parts to the privacy requirements: the Financial Privacy Rule, Safeguards Rule and pretexting provisions.
FFIEC
The Council is a formal interagency body empowered to prescribe uniform principles, standards, and report forms for the federal examination of financial institutions by the Board of Governors of the Federal Reserve System (FRB), the Federal Deposit Insurance Corporation (FDIC), the National Credit Union Administration (NCUA), the Office of the Comptroller of the Currency (OCC), and the Office of Thrift Supervision (OTS) and to make recommendations to promote uniformity in the supervision of financial institutions.
HIPAA
The US Depart of Health and Human Services' Office for Civil Rights enforces the HIPAA Privacy Rule, which protects the privacy of individually identifiable health information; the HIPAA Security Rule, which sets national standards for the security of electronic protected health information; and the confidentiality provisions of the Patient Safety Rule, which protect identifiable information being used to analyze patient safety events and improve patient safety.
FISMA
Federal Information Security Management Act (FISMA) Implementation Project under NIST promotes the development of key security standards and guidelines to support the implementation of and compliance with the FISMA including: standards for categorizing information and information systems by mission impact, standards for minimum security requirements for information and information systems and guidance for selecting appropriate security controls for information systems.
FTC
The Federal Trade Commission created the Red Flags Rule which requires many businesses and organizations to implement a written Identity Theft Prevention Program designed to detect the warning signs - or "red flags" - of identity theft in their day-to-day operations.
OMB
The Office of Management and Budget created regulations around transparency to demonstrate to the public that the government is spending citizen money wisely, that government is operating in an accountable manner, and that decisions are made to ensure the safety and protection of all Americans. OMB Watch tracks and analyzes policies that affect the public's right to know and works to improve them with the goal to increase the quality of, access to, and use of government information.
CIA
The Central Intelligence Agency (CIA) created the Director of Central Intelligence Directive (DCID), which is a policy and guidance document issued by the Director of Central Intelligence that provides guidance and direction to members of the US Intelligence Community. Many DCIDs have been superseded or modified by Intelligence Community Directives (ICD) issued by the Director of National Intelligence.
NVD
National Vulnerability Database (NVD) is the U.S. government repository of standards based vulnerability management data represented using the Security Content Automation Protocol (SCAP). This data enables automation of vulnerability management, security measurement, and compliance. NVD includes databases of security checklists, security related software flaws, misconfigurations, product names, and impact metrics. It is a division of NIST.
 
 

Solutions
Actionable Risk
Continuous Compliance
Risk-Based Security
Products
Technology
Platform
Applications
Connectors
Content
Services
Cont. Comp. Services
Cloud Managed Services
Consulting Services
Support
Education
Customers
Financial Services
Healthcare and Privacy
Public Sector
Retail, Internet and Media
Technology, Industrial and Energy
Partners
Service Providers
Technology Providers
Content Providers
OpenGRC™ by Agiliance
Become a Partner
News
Press Releases
Webcasts
Events
Demo Tuesday
Company
Management
Directors
Careers
Contact Us