Centers for Medicare & Medicaid Services – Plan of Action and Milestones Handbook
3.12 3.12.2 Security Assessment
https://security.cms.gov/policy-guidance/cms-plan-action-and-milestones-poam-handbook
A complete guide to creating, managing, and closing your system’s POA&M
Department of Energy – Plan of Action and Milestones (POA&M) Training Session
3.12 3.12.2 Security Assessment
https://www.energy.gov/sites/prod/files/cioprod/documents/Mon_1300_SalonIII_POAMv11_DataSphere01_jmn.pdf
This training is intended to provide guidance for developing effective POA&Ms.
Department of Homeland Security – Process Guide for Plan of Action and Milestones (POA&M)
3.12 3.12.2 Security Assessment
https://www.dhs.gov/sites/default/files/publications/4300A-Handbook-Attachment-H-POAM-Guide.pdf
The guidance in this Attachment is written to assist DHS and its Components in implementing the POA&M process.
FedRAMP – Plan of Action and Milestones (POA&M) Template
3.12 3.12.2 Security Assessment
https://s3.amazonaws.com/sitesusa/wp-content/uploads/sites/482/2015/03/POAM-Template-User-Guide_02182015.docx
This link provides a FedRAMP POA&M template.
U.S. Department of Agriculture – Plan of Action and Milestones Policy
3.12 3.12.2 Security Assessment
https://www.usda.gov/directives/dr-3565-003
This example policy from the USDA can be referenced for how they handle identifying, assessing, prioritizing, and monitoring the progress of corrective efforts for security vulnerabilities.
YouTube – An Introduction to the Plan of Actions and Milestones (POA&M)
3.12 3.12.2 Security Assessment
https://www.youtube.com/watch?v=DmjRAJc2xXs
In this YouTube video the plan of action and milestones (POA&M) document is introduced and explained.