{"data":{"id":"us/32-cfr-2004.12","jurisdiction":"us","citation":"32 CFR 2004.12","heading":"ISOO review of agency NISP implementation.","body":"(a) ISOO fulfills its oversight role based, in part, on information received from NISP Policy Advisory Committee (NISPPAC) members, from on-site reviews that ISOO conducts under the authority of E.O. 12829, and from any submitted complaints and suggestions. ISOO reports findings to the responsible CSA or agency.\n(b) ISOO reviews agency policies and guidelines to ensure consistency with NISP policies and procedures. ISOO may conduct reviews during routine oversight visits, when a problem or potential problem comes to ISOO's attention, or after a change in national policy that impacts agency policies and guidelines. ISOO provides the responsible agency with findings from these reviews.","path":["Title 32—National Defense","Subtitle B—Other Regulations Relating to National Defense","CHAPTER XX—INFORMATION SECURITY OVERSIGHT OFFICE, NATIONAL ARCHIVES AND RECORDS ADMINISTRATION","PART 2004—NATIONAL INDUSTRIAL SECURITY PROGRAM (NISP)","Subpart A—Implementation and Oversight"],"source_url":"https://www.ecfr.gov/api/versioner/v1/full/2026-08-25/title-32.xml","current_through":"2026-08-25","vintage":"","retrieved_at":"2026-08-27T02:25:30Z","sha256":"42338d3de3d81566dffcc282bd90199a5b5523b3d29cc035e182b1872f94aa64","source_id":"us-cfr","stale":true,"prev":"us/32-cfr-2004.11","next":"us/32-cfr-2004.20"},"notice":"GroundRules: Original legal text. Not legal advice."}
