Vigyata.AI
Is this your channel?

TIPS on Conducting NIST 800-53 Rev4 to Rev5 Control GAP Analysis

4.3K views· 122 likes· 25:12· Sep 21, 2023

🛍️ Products Mentioned (8)

In this video, we will explore the critical process of conducting a gap analysis for NIST 800-53 controls, specifically focusing on the transition from Revision 4 to Revision 5. To ensure comprehensive coverage of this topic, we have divided this video into two parts. Welcome to Part 1, which you are currently viewing here on YouTube (as indicated by the platform). In this segment, we will delve into the initial steps and vital information needed for this analysis. Part 2 of this video will be an exclusive offering for my valued Patrons as a gesture of gratitude for their ongoing financial support. If you're interested in gaining access to this in-depth content and additional resources that are not available on my YouTube channel, consider becoming a KamilSec Patron. I encourage you to engage with this content by liking, subscribing, sharing, and leaving your comments. Your interaction will help boost the visibility of these videos within the YouTube algorithm, making it possible for a wider audience to benefit from the valuable insights shared. Link to my Patreon page: https://www.patreon.com/kamilSec?fan_landing=true Buy me a coffee if you appreciate my work https://buymeacoffee.com/kamilsec Computer Security Resource Center https://csrc.nist.gov/publications The free way to help the channel grow is by subscribing using the link below: https://www.youtube.com/c/KamilSec?su... *************Patreon & Channel Support******************* https://www.patreon.com/kamilSec?fan_landing=true​ ********Order your KamilSec (KS) Designs Merch:********** https://kamilsec.creator-spring.com/ ************************************************************** CashApp: $Kamilzak Zelle: kaamilzak@gmail.com Paypal: https://paypal.me/MZakari Thank You!!! ************************************************************* **I ALSO CONDUCT INDIVIDUALIZED RESUME AND INTERVIEW PREP SESSION** Udemy Affliate link: https://track.flexlinkspro.com/g.ashx?foid=1.39197.1000020157&trid=1257621.161087&foc=11&fot=9999&fos=2&fobs=380496&fobs3=1.39197.1000020157 VeeFLY Referral Link: https://veefly.com?referrer=318243 Connect with me on Social Media: Twitter: https://twitter.com/Kamilzak_1​ Instagram: @Kamilzak1 E-Mail: Kaamilzak@gmail.com

About This Video

In this video, I walk you through practical tips for doing a NIST SP 800-53 control gap analysis when you’re transitioning from Revision 4 to Revision 5. A lot of organizations (including federal) are in the middle of this shift, and my goal is to help you understand what actually changed and how to capture those changes cleanly in your SSP. This is Part 1 (YouTube), where I focus on the initial steps and the essential references you need before you start updating anything. I break down the key Rev 5 changes you must account for: 66 new base controls, 202 new control enhancements, 131 new control parameters added to existing controls, and 90 controls that were withdrawn but incorporated into other controls. Then I show you the workflow I recommend: get familiar with the structure of 800-53 Rev 5 and 800-53B (because baselines moved), identify your current Rev 4 control implementations in the SSP, and then compare Rev 4 vs Rev 5 side-by-side. I demonstrate this with AC-1 so you can see how new parameters (like selecting organizational/mission/system level, designating an official, and adding event-based review triggers) drive updates to your implementation statements. I also point you to the FedRAMP change document/legend so you can quickly spot what changed, what was withdrawn, and what got merged (like AC-2(10) moving into AC-2k).

Frequently Asked Questions

🎬 More from KamilSec