By David Trout

With today’s integrated information systems it can be a challenge to understand where one system ends and another begins. Getting the system boundary right can make the difference between executing a relatively simple set of compliance tasks and struggling to understand and manage the security risks that complex network architecture can create.

NIST 800-171 guidance focuses on high level considerations rather than the nuts and bolts of typical network architecture for commercial systems. Redesigning existing commercial systems or creating a separate system for government contracting work can be time consuming and expensive. You are chasing compliance instead of focusing on what you do best.



