home/glossary/Federal Information Security Management Act

Federal Information Security Management Act

nouncandidate·updated May 9, 2026

A statute (Title III, P.L. 107-347) that requires agencies to assess risk to information systems and provide information security protections commensurate with the risk. FISMA also requires that agencies integrate information security into their capital planning and enterprise architecture processes, conduct annual information systems security reviews of all programs and systems, and report the results of those reviews to OMB.

polysemousMWE

Classifications

Entity Type

Framework95%llm-generatedllm:claude-haiku-4-5
?unassignedlast reviewed

Sensitivity

Regulated90%rule-basedr:sens.regulated.framework.v1
?unassignedlast reviewed

Information Class

unclassified

Variants

acronym
FISMA
plural
Federal Information Security Management Acts
possessive
Federal Information Security Management Act's
pluralpossessive
Federal Information Security Management Acts'