Hello, you are using an old browser that's unsafe and no longer supported. Please consider updating your browser to a newer version, or downloading a modern browser.

Risk Management Framework (RMF) V2.0 for DoD/IC

The RMF 2.0 training course is designed to provide cybersecurity professionals, risk managers, and IT personnel with the knowledge and skills needed to navigate the Risk Management Framework (RMF) 2.0. This intensive three-day program offers in-depth coverage of the updated RMF process, its integration with modern cybersecurity practices, and practical applications in a Department of Defense (DoD) environment.

Don’t miss this opportunity to become a skilled RMF 2.0 professional and enhance your career in cybersecurity. Register now for our RMF 2.0 Three-Day Training Course and take the first step towards mastering risk management in a modern cybersecurity landscape.

View RMF Schedule & Pricing

RMF Group Training Options

Placeholder Image
Preparation
Training Camp sets you up for success by ensuring you’re well-prepared before class begins. We provide comprehensive pre-course materials, including study guides, e-learning modules, and practice questions, to help you familiarize yourself with key CISSP concepts and assess your current knowledge.
You will also receive a detailed course roadmap and access to our expert instructors for any pre-class questions. This preparation ensures you arrive ready to fully engage in the intensive training, maximizing your learning experience and boosting your confidence for exam day.
Morning
Introduction and Overview
Course objectives, schedule, and materials
Overview of RMF 2.0 and its significance in modern cybersecurity
Key updates from RMF to RMF 2.0, including new processes and alignment with NIST Cybersecurity Framework (CSF)
Key cybersecurity policy regulations (NIST SP, FISMA, etc.)
Roles and responsibilities within RMF 2.0 (e.g., Authorizing Official, Security Control Assessor)

Afternoon
Organizational Preparation and Risk Analysis
Step 0: Prepare – Organizational preparation and readiness
Risk management concepts and risk-based decision-making
Risk assessment techniques and integration into the RMF 2.0 process
Interactive Lab Session: Identifying roles and responsibilities in RMF 2.0
Case Study: Developing a cybersecurity policy and risk management strategy

Morning
Understanding the RMF 2.0 Process – Steps 1 to 3
Step 1: Categorize – Categorizing information systems and determining impact levels
Step 2: Select – Selecting appropriate security controls based on system categorization
Step 3: Implement – Implementing selected controls in an organizational context

Afternoon
The RMF 2.0 Process – Steps 4 to 5
Step 4: Assess – Methods for assessing the effectiveness of implemented controls
Step 5: Authorize – Process of obtaining authorization to operate from an Authorizing Official
Interactive Lab Session: Categorizing information systems and selecting controls
Simulated Scenario: Developing an authorization package and conducting an assessment

Morning
RMF 2.0 Process – Step 6 and Continuous Monitoring
Step 6: Monitor – Continuous monitoring throughout the RMF 2.0 process
Developing a continuous monitoring strategy, including automation tools and techniques
DoD-Specific RMF 2.0 Areas
Overview of eMASS and its role in the RMF 2.0 process for DoD
Introduction to DoD’s CYBER.MIL site, CMRS, and RMF Knowledge Service (RMFKS)
Understanding the Joint SAP Implementation Guide (JSIG) for RMF and its specific use cases

Afternoon
Lab Exercises and DoD RMF 2.0 Tools
Practical exercises using eMASS or similar tools for risk management and continuous monitoring
Group Activity: Leveraging DoD-specific resources and developing a continuous monitoring plan
Discussion: Integrating DevSecOps and agile practices within RMF 2.0
Wrap-Up and Review
Review of key concepts covered over the three days
Q&A session and discussion on best practices and future trends in RMF 2.0
Course evaluation and feedback

This course is ideal for cybersecurity professionals, risk managers, Information System Security Officers (ISSOs), system administrators, engineers, and compliance officers who want to deepen their knowledge of RMF 2.0 and learn how to implement it within their organizations.

The RMF 2.0 course aligns with key knowledge areas covered in the ISC2 CGRC certification. It provides a solid foundation for those preparing for the CGRC exam by covering essential governance, risk management, and compliance concepts that are integral to both RMF 2.0 and the CGRC certification.

While there are no strict prerequisites, having a foundational knowledge of cybersecurity principles and previous experience in DoD/IC environments will enhance your learning experience.

The course covers the following topics:

  • Overview and updates of RMF 2.0, including integration with NIST Cybersecurity Framework (CSF)
  • Organizational preparation and risk management strategies
  • Detailed steps of the RMF 2.0 process, including categorization, selection, implementation, assessment, authorization, and continuous monitoring
  • DoD-specific RMF 2.0 areas, such as eMASS, CYBER.MIL, and RMF Knowledge Service (RMFKS)
  • Hands-on labs and real-world scenarios for practical application

This course is available in both live online and in-person formats. Participants can choose the delivery method that best suits their needs and preferences.

While there are no strict prerequisites, a basic understanding of cybersecurity principles and frameworks is highly recommended to maximize learning and engagement during the course.

Yes, participants will receive a certificate of completion at the end of the course, demonstrating their knowledge and understanding of RMF 2.0.

Yes, this course may be eligible for CPE credits. Please check with your certification body to determine the exact number of credits you can earn by attending this course.

The course includes interactive lab sessions and practical exercises where participants will apply RMF 2.0 concepts, such as categorizing information systems, selecting security controls, and developing a continuous monitoring strategy. You will also have the opportunity to work with DoD-specific tools like eMASS in a simulated environment.

Back to Tabs

RMF Training Camp Reviews

Read More

JA

Northrop Grumman

The intent of the training was to help us pass the exam, and make us familiar with the material and types of questions. The instructor did a good job of getting us ready for the exam. I passed the exam!

Lonnie Fleming

NJVC

I love the Training Camp format which handles all of the logistics of the training and allowing the student to focus on the course material and certification test! Training Camp helped me to be successful, THE FIRST TIME, for both my PMP and CISSP.

Mark N

Booz Allen Hamilton

I left the class with a new-found confidence.

Andrew Horan

GDIT

I was pleasantly surprised by Training Camp. The topic were presented in an easily understandable way. They have a high success rate. What else is there to say

Let’s Get Started, Together

Get skilled, get certified. We offer a wide range of solutions trusted by thousands of organizations. Fill out a contact form and one of our Enterprise Solutions experts will contact you to discuss the best training solutions for your team. You can also e-mail our team directly at: [email protected]

Get Pricing & Schedule

Course Features

ill-1

RMF Process Experts

ill-2

Award Winning RMF Courseware

screen icon

(ISC)² CAP Exam Bonus Content

ill-4

98% Student Satisfaction Rate

RMF DoD/IC Boot Camp Related Courses

View All Courses

Featured on