Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search CSRC

Use this form to search content on CSRC pages.

For a phrase search, use " "


Limit results to content tagged with of the following topics:
Showing 1 through 25 of 4844 matching records.
Publications ITL Bulletin (Final) (Withdrawn) August 20, 2009

https://csrc.nist.gov/pubs/itlb/2009/08/revised-catalog-of-security-controls-for-federal-i/final

Abstract: This bulletin summarizes the information presented in NIST Special Publication 800-53, Revision 3, Recommended Security Controls for Federal Information Systems and Organizations, on the catalog of security controls for information systems. These best practices are broad based and comprehensive safe...

Publications ITL Bulletin (Final) March 24, 2006
https://csrc.nist.gov/pubs/itlb/2006/03/minimum-security-requirements-for-federal-informat/final

Abstract: This bulletin provides information on the applicability and implementation of FIPS 200, Minimum Security Requirements for Federal Information and Information Systems. It advises Federal agencies of the requirements under the Federal Information Security Management Act (FISMA) of 2002 to categorize t...

Publications ITL Bulletin (Final) May 1, 2005
https://csrc.nist.gov/pubs/itlb/2005/05/recommended-security-controls-for-federal-informat/final

Abstract: This ITL Bulletin summarizes NIST SP 800-53, Recommended Security Controls for Federal Information Systems and discusses the use of SP 800-53 within the context of federal agency information security programs. The bulletin covers SP 800-53 and Federal Information Security Management Act (FISMA) requ...

Publications ITL Bulletin (Final) (Withdrawn) November 1, 2004

https://csrc.nist.gov/pubs/itlb/2004/11/understanding-the-new-nist-standards-and-guideline/final

Abstract: This bulletin summarizes an article entitled "Understanding the New FISMA-Required NIST Standards and Guidelines" by Ron S. Ross, PhD. It highlights FIPS 199, "Standards for Security Categorization of Federal Information and Information Systems," which is NIST's flagship standard in support of the F...

Publications FIPS 199 (Final) February 1, 2004
https://csrc.nist.gov/pubs/fips/199/final

Abstract: The purpose of this document is to provide a standard for categorizing federal information and information systems according to an agency's level of concern for confidentiality, integrity, and availability and the potential impact on agency assets and operations should their information and informat...

Publications Other (Final) November 28, 2000
https://csrc.nist.gov/pubs/other/2000/11/28/federal-information-technology-security-assessment/final

Abstract: [The NIST Computer Security Division prepared this report for the Security, Privacy, and Critical Infrastructure Committee of the CIO Council.] The Federal Information Technology (IT) Security Assessment Framework (or Framework) provides a method for agency officials to 1) determine the current sta...

Updates December 12, 2014
https://csrc.nist.gov/news/2014/sp-800-53a,-revision-4,-has-been-approved-as-final

NIST announces the release of Special Publication 800-53A, Revision 4, Assessing Security and Privacy Controls in Federal Information Systems and Organizations: Building Effective Assessment Plans.

Updates July 31, 2014
https://csrc.nist.gov/news/2014/draft-special-publication-800-53a-revision-4

NIST announces the release of Draft Special Publication 800-53A, Revision 4, Assessing Security and Privacy Controls in Federal Information Systems and Organizations: Building Effective Assessment Plans (Initial Public Draft).

Updates June 10, 2014
https://csrc.nist.gov/news/2014/errata-update-to-special-publication-800-37,-revis

NIST announces the release of an errata update to Special Publication 800-37, Revision 1, Guide for Applying the Risk Management Framework to Federal Information Systems: A Security Life Cycle Approach.

Updates March 14, 2014
https://csrc.nist.gov/news/2014/(third)-draft-special-publication-800-16-revision

NIST announces the release of Draft Special Publication (SP) 800- 16 Revision 1 (3rd public draft), A Role-Based Model For Federal Information Technology/Cyber Security Training for public comment. SP 800-16 describes information technology / cyber security role-based training ...

Updates January 23, 2014
https://csrc.nist.gov/news/2014/nist-special-publication-800-53-revision-4

NIST Special Publication 800-53 Revision 4, Security and Privacy Controls for Federal Information Systems and Organizations

Updates October 24, 2013
https://csrc.nist.gov/news/2013/draft-sp-800-16-revision-1-(second-public-draft)

NIST announces the release of the Second Public Draft of Special Publication (SP) 800-16 (Revision 1), A Role-Based Model For Federal Information Technology/Cyber Security Training for public comment. SP 800-16 describes information technology / cyber security role-based ...

Updates April 30, 2013
https://csrc.nist.gov/news/2013/nist-announces-the-final-release-of-sp-800-53-revi

NIST announces the final release of Special Publication (SP) 800-53, Revision 4, Security and Privacy Controls for Federal Information Systems and Organizations. Special Publication 800-53, Revision 4, represents the most comprehensive update to the security controls catalog since its ...

Updates August 30, 2012
https://csrc.nist.gov/news/2012/nist-fips-140-3-(second-draft)-request-for-additi

NIST seeks additional comments on specific sections of the 2009 Draft Federal Information Processing Standard 140-3, Security Requirements for Cryptographic Modules… Comments were due October 1, 2012.

Updates December 11, 2009
https://csrc.nist.gov/news/2009/announcing-revised-draft-fips-140-3

NIST announces the Revised Draft Federal Information Processing Standard 140-3, Security Requirements for Cryptographic Modules. Comments must be received on or before March 11, 2010.

Updates July 13, 2007
https://csrc.nist.gov/news/2007/announcing-draft-fips-140-3,-security-requirements

This notice announces Draft Federal Information Processing Standard 140-3, Security Requirements for Cryptographic Modules, for public review and comment. The draft standard, designated “Draft FIPS 140-3,” is proposed to supersede FIPS 140-2.

Updates March 30, 2006
https://csrc.nist.gov/news/2006/announcing-approval-of-fips-200,-minimum-security

This notice announces the Secretary of Commerce's approval of Federal Information Processing Standard (FIPS) 200, Minimum Security Requirements for Federal Information and Information Systems.

Updates July 15, 2005
https://csrc.nist.gov/news/2005/announcing-draft-fips-publication-200

The National Institute of Standards and Technology (NIST) announces the release of draft Federal Information Processing Standards (FIPS) Publication 200, Minimum Security Requirements for Federal Information and Information Systems for public comment.

Updates January 12, 2005
https://csrc.nist.gov/news/2005/announcing-development-of-fips-140-3,-a-revision-o

NIST announces that it plans to develop Federal Information Processing Standard (FIPS) 140-3, which will supersede FIPS 140-2, Security Requirements for Cryptographic Modules.

Updates February 10, 2004
https://csrc.nist.gov/news/2004/announcing-approval-of-fips-publication-199

The Secretary of Commerce has approved FIPS Publication 199, Standards for Security Categorization of Federal Information and Information Systems, and has made it compulsory and binding on Federal agencies for the protection of…

Updates May 16, 2003
https://csrc.nist.gov/news/2003/announcing-draft-fips-199and-request-for-comments

Draft FIPS 199 defines requirements to be used by Federal agencies to categorize information and information systems, and to provide appropriate levels of information security according to a range of risk levels…

Updates November 17, 1999
https://csrc.nist.gov/news/1999/request-for-comments-on-draft-fips-140-2

NIST solicits public comments on Draft Federal Information Processing Standard (FIPS) 140-2, Security Requirements for Cryptographic Modules

Updates October 23, 1998
https://csrc.nist.gov/news/1998/proposed-reaffirmation-of-fips-140-1

NIST proposes the reaffirmation of Federal Information Processing Standard (FIPS) 140-1, Security Requirements for Cryptographic Modules

Publications SP 800-37 Rev. 1 (Final) (Withdrawn) June 5, 2014

https://csrc.nist.gov/pubs/sp/800/37/r1/upd1/final

Abstract: The purpose of SP 800-37 Rev 1 is to provide guidelines for applying the Risk Management Framework to federal information systems to include conducting the activities of security categorization, security control selection and implementation, security control assessment, information system authorizat...

1     2     3     4     5     6     7     8     9     10     11     12     13     14     15     16     17     18     19     20     21     22     23     24     25  next >  last >>