Summary
NIST has released a working draft of NIST Special Publication (SP) 800-55 Revision 2, Performance Measurement Guide for Information Security. The public is invited to provide input by February 27, 2023, for consideration in the update.
Details
This working draft of SP 800-55 Revision 2 is an annotated outline that will enable further community discussions and feedback. Comments received by the deadline will be incorporated to the extent practicable. NIST will then post a complete public draft of SP 800-55 Rev. 2 for an additional comment period.
The comment period is open through February 27, 2023. See the publication details for a copy of the draft. Submit comments to cyber-measures@list.nist.gov with “Comment on NIST SP 800-55r2 initial working draft” in the subject field.
Submitted comments, including attachments and other supporting materials, will become part of the public record and are subject to public disclosure. Personally identifiable information and confidential business information should not be included (e.g., account numbers, Social Security numbers, names of other individuals). Comments that contain profanity, vulgarity, threats, or other inappropriate language will not be posted or considered.
Security and Privacy: audit & accountability, maintenance, planning, risk management, security measurement
Laws and Regulations: OMB Circular A-11