The DoD CIO gave an overview of the Risk Management Framework (RMF) transition.  The Risk Management Framework Knowledge Service (RMFKS) is a central repository for RMF DoD for IT.  This site is up for access as long as you have a Common Access Card (CAC) or ECA cert.  The link is below but some of the links on the site are still under construction.

Information Assurance
Information Assurance

The former site was for certification & accreditation / risk management was the DIACAP Knowledge Service (


Tags : DIACAPDIARMFknowledge servicermfRMF Knowledge ServiceRMFKS
Bruce Brown

The author Bruce Brown

I have done a lot of work with Risk Management Framework for DoD IT (formerly DIACAP,DITSCAP). I noticed there was not a lot of information for security engineers on the nuts and bolts of it, so i started writing it down.

security is just a hobby. my real job is to help humanity out of poverty (information & financial poverty).

I am sure we can do it together

maybe rmf will help humanity. ;p
the internet maybe our greatest hope, we should keep it safe.

Leave a Response