Cybersecurity Education¶
Reviewing All Training¶
KSI-CED-RAT
Changelog:
- 2026-06-24: Official launch of the FedRAMP Consolidated Rules for 2026.
The effectiveness of relevant cybersecurity education and training is persistently reviewed, including at least general training for all employees, role-specific training for employees in high risk roles, training for development and engineering staff on secure software delivery, and training for staff involved with incident response or disaster recovery.
Related SP 800-53 Controls: CP-03, IR-02, PS-06, AT-02, AT-02 (02), AT-02 (03), AT-03 (05), AT-04, IR-02 (03), AT-03, SR-11 (01)
Terms: Incident, Persistently, Vulnerability Response