reference
NIST’s OSCAL provides layered JSON and XML models, including Catalog, Profile, and Component for System Security Plan (SSP), Security Assessment Plan (SAP), Security Assessment Report (SAR), and Plan of Actions and Milestones (POA&M), to streamline control assessments.
Authors
Sources
- GovSCH: An Open-Source Schema for Transforming Governance ... www.newamerica.org via serper