Cms staff members and partners are required to complete specific training regarding issues like information system security awareness training privacy awareness training.
Cms information systems security and privacy awareness training.
Devsecops is the integration of information system security into development and operations.
Business owners bos information system security officers issos cyber risk advisors cras isso contractor support issocs and it auditors.
1 2 1 2 information security awareness training all contractor employees having access to 1 federal information or a federal information system 2 pii or 3 physical or logical access to cms it resources shall complete.
A federal government website managed and paid for by the u s.
7500 security boulevard baltimore md 21244 cms hhs websites cms global footer medicare gov.
The cms chief information officer cio the cms chief information security officer ciso.
The policy contained within the cms is2p2 and the procedures contained within this document.
Enterprise security services ess line of business lob program overview.
Adequate employee training and education is a key factor in carrying out cms mission.
This policy requires all cms stakeholders to implement adequate information security and privacy safeguards to protect all cms sensitive information.
Content created by office of the chief information officer ocio content last reviewed on august 27 2020.
Centers for medicare medicaid services.
It security awareness and training.
Cms employees and contractors with privileged access are required to complete role based training and meet continuing education requirements commensurate with their role.
Without proper training and education individuals will be less effective in their roles and limited in their career development.
All cms stakeholders including business owners and information system security officers isso to implement adequate information security and privacy safeguards to protect all cms sensitive information.
Other training avenues such as conferences.
Describe training system users receive above and beyond general security and privacy awareness training.
To cms information and information systems in compliance with hhs policy federal law and regulations.
See security awareness and training for a list of cybersecurity and role based training for hhs employees and contractors.