Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search CSRC

Use this form to search content on CSRC pages.

For a phrase search, use " "


Limit results to content tagged with of the following topics:
Showing 826 through 850 of 1325 matching records.
Publications IR 8267 (Initial Public Draft)

Security Review of Consumer Home Internet of Things (IoT) Products

October 1, 2019
https://csrc.nist.gov/pubs/ir/8267/ipd

Abstract: This report presents the results of a project that conducted a technical review of security features in different categories of consumer home Internet-of-Things (IoT) devices. The categories of IoT devices included smart light bulbs, security lights, security cameras, doorbells, plugs, thermostats,...

Updates

Cybersecurity Framework Manufacturing Profile Low Impact Level Example Implementations Guide Released

September 30, 2019
https://csrc.nist.gov/news/2019/nistir-8183a-csf-mfg-profile-low-impact-level

NIST has published NISTIR 8183A (3 volumes), "Cybersecurity Framework Manufacturing Profile Low Impact Level Example Implementations Guide."

Publications IR 8183A Vol. 1 (Final)

Cybersecurity Framework Manufacturing Profile Low Impact Level Example Implementations Guide: Volume 1 – General Implementation Guidance

September 30, 2019
https://csrc.nist.gov/pubs/ir/8183/a/v1/final

Abstract: This guide provides general implementation guidance (Volume 1) and example proof-of-concept solutions demonstrating how available open-source and commercial off-the-shelf (COTS) products could be implemented in manufacturing environments to satisfy the requirements in the Cybersecurity Framework (CS...

Publications IR 8183A Vol. 2 (Final)

Cybersecurity Framework Manufacturing Profile Low Impact Level Example Implementations Guide: Volume 2 – Process-based Manufacturing System Use Case

September 30, 2019
https://csrc.nist.gov/pubs/ir/8183/a/v2/final

Abstract: This guide provides example proof-of-concept solutions demonstrating how available open-source and commercial off-the-shelf (COTS) products could be implemented in process-based manufacturing environments to satisfy the requirements in the Cybersecurity Framework (CSF) Manufacturing Profile Low Impa...

Publications IR 8183A Vol. 3 (Final)

Cybersecurity Framework Manufacturing Profile Low Impact Level Example Implementations Guide: Volume 3 – Discrete-based Manufacturing System Use Case

September 30, 2019
https://csrc.nist.gov/pubs/ir/8183/a/v3/final

Abstract: This guide provides example proof-of-concept solutions demonstrating how available open-source and commercial off-the-shelf (COTS) products could be implemented in discrete-based manufacturing environments to satisfy the requirements in the Cybersecurity Framework (CSF) Manufacturing Profile Low Sec...

Events

Human Factors in Smart Home Technologies

September 24, 2019 - September 24, 2019
https://csrc.nist.gov/events/2019/human-factors-in-smart-home-technologies

Human Factors in Smart Home Technologies Workshop September 24, 2019 National Institute of Standards and Technology, Gaithersburg, MD This workshop addressed human considerations for smart home devices, including usability, user perceptions, and end-user privacy and security considerations. Invited speakers from industry and academia provided their perspectives via presentations and a moderated panel. In addition to becoming more aware of human aspects of smart home technologies, the attendees from industry, government, and academia had the opportunity to influence NIST's future research...

Updates

Draft Cybersecurity Practice Guide--Energy Sector Asset Management

September 23, 2019
https://csrc.nist.gov/news/2019/nist-releases-draft-sp-1800-23-for-comment

The NCCoE has released Draft SP 1800-23, "Energy Sector Asset Management," for public comment. The comment period ends November 25, 2019.

Updates

Zero Trust Architecture: Draft NIST SP 800-207 Available for Comment

September 23, 2019
https://csrc.nist.gov/news/2019/zero-trust-architecture-draft-sp-800-207

NIST has released Draft Special Publication (SP) 800-207, Zero Trust Architecture. Public comments are due by November 22, 2019.

Events

SSCA Fall 2019

September 17, 2019 - September 18, 2019
https://csrc.nist.gov/events/2019/software-and-supply-chain-assurance-forum-fall-20

The Software and Supply Chain Assurance Forum (SSCA) provides a venue for government, industry, and academic participants from around the world to share their knowledge and expertise regarding software and supply chain risks, effective practices and mitigation strategies, tools and technologies, and any gaps related to the people, processes, or technologies involved. The effort is co-led by the National Institute of Standards and Technology (NIST), the Department of Homeland Security (DHS), the Department of Defense (DoD), and the General Services Administration (GSA). Participants represent a...

Updates

Draft Cybersecurity Practice Guide--Securing Picture Archiving and Communication System (PACS)

September 16, 2019
https://csrc.nist.gov/news/2019/nist-releases-draft-sp-1800-24-for-comment

The NCCoE has released Draft SP 1800-24, "Securing Picture Archiving and Communication System (PACS): Cybersecurity for the Healthcare Sector," for public comment. The comment period ends November 18, 2019.

Events

C-SCRM Validating the Integrity of Server and Client Devices

September 10, 2019 - September 10, 2019
https://csrc.nist.gov/events/2019/c-scrm-validating-the-integrity-of-server-and-clie

On Tuesday, September 10, 2019, NIST’s National Cybersecurity Center of Excellence Supply Chain Assurance project team is having an Industry Day, starting at 8:30am. The purpose of this Industry Day is to identify the issues and challenges of Cyber Supply Chain Risk Management (C-SCRM) in enterprises as input to a potential NCCoE demonstration project. NIST starts the day by presenting its preliminary plans for this project. Then, there will be short presentations from a few stakeholders, sharing their views of the challenges enterprises face when verifying that their purchased computing...

Updates

Preliminary Draft of the NIST Privacy Framework

September 9, 2019
https://csrc.nist.gov/news/2019/preliminary-draft-of-the-nist-privacy-framework

NIST seeks comments on the Preliminary Draft of the "NIST Privacy Framework: A Tool for Improving Privacy through Enterprise Risk Management." The comment period closes October 24, 2019.

Publications SP 1800-12 (Final)

Derived Personal Identity Verification (PIV) Credentials

August 27, 2019
https://csrc.nist.gov/pubs/sp/1800/12/final

Abstract: Federal Information Processing Standards (FIPS) Publication 201-2, “Personal Identity Verification (PIV) of Federal Employees and Contractors,” establishes a standard for a PIV system based on secure and reliable forms of identity credentials issued by the federal government to its employees and con...

Publications Project Description (Final)

Securing the Industrial Internet of Things: Cybersecurity for Distributed Energy Resources

August 15, 2019
https://csrc.nist.gov/pubs/pd/2019/08/15/securing-the-iiot-cybersecurity-for-distributed-en/final

Abstract: This project explores several scenarios in which information exchanges among commercial- and utility-scale distributed energy resources (DERs) and electric distribution grid operations can be protected from certain cybersecurity compromises. Components of these infrastructures form what is commonly...

Publications Conference Paper (Final)

Security Awareness in Action: A Case Study [extended abstract]

August 11, 2019
https://csrc.nist.gov/pubs/conference/2019/08/11/security-awareness-in-action-a-case-study/final

Conference: 5th Workshop on Security Information Workers (WSIW 2019) Abstract: The in-progress case study will allow for examination of a security awareness team from several perspectives via a multi-faceted approach involving: 1) interviews of security awareness team members, managers in the team’s chain-of-command, and agency employees who receive the security awareness...

Updates

Situational Awareness for Electric Utilities: NIST Publishes Cybersecurity Practice Guide SP 1800-7

August 7, 2019
https://csrc.nist.gov/news/2019/nist-publishes-sp-1800-7

NIST has published Cybersecurity Practice Guide Special Publication (SP) 1800-7, "Situational Awareness for Electric Utilities."

Publications SP 1800-7 (Final)

Situational Awareness for Electric Utilities

August 7, 2019
https://csrc.nist.gov/pubs/sp/1800/7/final

Abstract: Through direct dialogue between NCCoE staff and members of the energy sector (composed mainly of electric power companies and those who provide equipment and/or services to them) it became clear that energy companies need to create and maintain a high level of visibility into their operating environ...

Publications SP 800-162 (Final)

Guide to Attribute Based Access Control (ABAC) Definition and Considerations

August 2, 2019
https://csrc.nist.gov/pubs/sp/800/162/upd2/final

Abstract: This document provides Federal agencies with a definition of attribute based access control (ABAC). ABAC is a logical access control methodology where authorization to perform a set of operations is determined by evaluating attributes associated with the subject, object, requested operations, and, i...

Publications IR 8204 (Final) (Withdrawn)

Cybersecurity Framework Online Informative References (OLIR) Submissions: Specification for Completing the OLIR Template

August 1, 2019

https://csrc.nist.gov/pubs/ir/8204/upd2/final

Abstract: This document provides instructions and definitions for completing the Cybersecurity Framework (CSF) Online Informative References (OLIR) spreadsheet template available for download at https://www.nist.gov/cyberframework/informative-references. This document is intended to assist developers of...

Updates

Core Cybersecurity Feature Baseline for Securable IoT Devices: Draft NISTIR 8259 Available for Comment

July 31, 2019
https://csrc.nist.gov/news/2019/draft-nistir-8259-available-for-comment

NIST has released Draft NISTIR 8259, "Core Cybersecurity Feature Baseline for Securable IoT Devices: A Starting Point for IoT Device Manufacturers," for public comment. The comment period closes on September 30, 2019.

Updates

Multifactor Authentication for E-Commerce: NIST Publishes Cybersecurity Practice Guide SP 1800-17

July 30, 2019
https://csrc.nist.gov/news/2019/nist-publishes-sp-1800-17

NIST has published Cybersecurity Practice Guide Special Publication (SP) 1800-17, "Multifactor Authentication for E-Commerce: Risk-Based, FIDO Universal Second Factor Implementations for Purchasers"

Publications SP 1800-17 (Final)

Multifactor Authentication for E-Commerce: Risk-Based, FIDO Universal Second Factor Implementations for Purchasers

July 30, 2019
https://csrc.nist.gov/pubs/sp/1800/17/final

Abstract: As retailers in the United States have adopted chip-and-signature and chip-and-PIN (personal identification number) point-of-sale (POS) security measures, there have been increases in fraudulent online card-not-present electronic commerce (e-commerce) transactions. The risk of increased fraudulent o...

Updates

Draft Cybersecurity Practice Guide--Mobile Device Security: Corporate-Owned Personally-Enabled (COPE)

July 22, 2019
https://csrc.nist.gov/news/2019/nist-releases-draft-sp-1800-21-for-comment

The NCCoE has released Draft SP 1800-21, "Mobile Device Security: Corporate-Owned Personally-Enabled (COPE)," for public comment. The comment period ends September 23, 2019.

Updates

Transport Layer Security (TLS) Server Certificate Management: Public Draft of SP 1800-16 Available for Comment

July 17, 2019
https://csrc.nist.gov/news/2019/nccoe-releases-draft-sp-1800-16-for-comment

The NCCoE has released Draft SP 1800-16, "Securing Web Transactions: Transport Layer Security (TLS) Server Certificate Management," for public comment. The comment period ends September 13, 2019.

<< first   < previous   22     23     24     25     26     27     28     29     30     31     32     33     34     35     36     37     38     39     40     41     42     43     44     45     46  next >  last >>