Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search CSRC

Use this form to search content on CSRC pages.

For a phrase search, use " "


Limit results to content tagged with of the following topics:
Showing 1051 through 1075 of 1415 matching records.
Publications IR 8193 (Initial Public Draft)

National Initiative for Cybersecurity Education (NICE) Framework Work Role Capability Indicators: Indicators for Performing Work Roles

November 8, 2017
https://csrc.nist.gov/pubs/ir/8193/ipd

Abstract: The national need for a common lexicon to describe and organize the cybersecurity workforce and requisite knowledge, skills, and abilities (KSAs) led to the creation of the National Initiative for Cybersecurity Education (NICE) Cybersecurity Workforce Framework (NICE Framework). The NICE Framework d...

Publications Journal Article (Final)

SARD: Thousands of Reference Programs for Software Assurance

November 2, 2017
https://csrc.nist.gov/pubs/journal/2017/11/sard-thousands-of-reference-programs-for-software/final

Journal: Journal of Cyber Security and Information Systems Abstract: A corpus of computer programs with known bugs is useful in determining the ability of tools to find bugs. This article describes the content of NIST's Software Assurance Reference Dataset (SARD), which is a publicly available collection of thousands of programs with known weaknesses. SARD has progra...

Events

Cyber Risk Analytics Project Review Workshop

October 26, 2017 - October 26, 2017
https://csrc.nist.gov/events/2017/cyber-risk-analytics-project-review-workshop

The purpose of this workshop is to review with participants, sponsors, and key interested parties the findings and lessons learned from a two-year long NIST and GSA-sponsored Cyber Risk Analytics project. A team composed of professionals from the University of Maryland (UMD), Zurich Insurance, and Beecher Carlson completed the following activities: Developed and field tested, with collaboration of NIST, a secure, online self-assessment tool, based on the Cybersecurity Framework; Created a breach database for survey participants by integrating the breach datasets from Advisen, RBS , the...

Updates

Call for Papers and Presentations for the 5th Annual Hot Topics in the Science of Security (HoTSoS) Symposium

October 25, 2017
https://csrc.nist.gov/news/2017/call-for-papers-presentations-for-5th-annual-hotso

Papers and presentations are solicited for the 5th Annual Hot Topics in the Science of Security (HoTSoS) Symposium, which will be held April 10–11, 2018 at the StateView Hotel in Raleigh, N.C., ......

Publications ITL Bulletin (Final)

NIST Guidance on Application Container Security

October 24, 2017
https://csrc.nist.gov/pubs/itlb/2017/10/application-container-security/final

Abstract: This bulletin summarizes the information found in NIST SP 800-190, Application Container Security Guide and NISTIR 8176, Security Assurance Requirements for Linux Application Container Deployments. The bulletin offers an overview of application container technology and its most notable security chal...

Events

IoT Cybersecurity Colloquium

October 19, 2017 - October 19, 2017
https://csrc.nist.gov/events/2017/iot-cybersecurity-colloquium

On October 19th, 2017, NIST is hosting the IoT Cybersecurity Colloquium to convene stakeholders from across government, industry, international bodies, and academia. Our goal is to better understand the concerns and threats associated with the rapidly broadening landscape of connected devices, known as the Internet of Things (IoT). Registration closes on October 12th! Join our Twitter Chat using #IoTSecurityNIST

Publications Project Description (Initial Public Draft)

Privileged Account Management: Securing Privileged Accounts for the Financial Services Sector

October 12, 2017
https://csrc.nist.gov/pubs/pd/2017/10/12/privileged-account-management-for-the-financial-se/ipd

Abstract: Privileged Account Management (PAM) is a domain within Identity and Access Management (IdAM) focusing on monitoring and controlling the use of privileged accounts. Privileged accounts include local and domain administrative accounts, emergency accounts, application management, and service accounts....

Publications IR 8194 (Final)

Exploratory Lens Model of Decision-Making in a Potential Phishing Attack Scenario

October 10, 2017
https://csrc.nist.gov/pubs/ir/8194/final

Abstract: Phishing, the transmission of a message spoofing a legitimate sender about a legitimate subject with intent to perform malicious activity, causes a tremendous and rapidly-increasing amount of damage to information systems and users annually. This project implements an exploratory computational model...

Events

RMF Workshop

October 3, 2017 - October 3, 2017
https://csrc.nist.gov/events/2017/nist-risk-management-framework-workshop

Purpose: Convene users of the NIST Risk Management Framework to discuss how the RMF is currently being used in the federal government and the private sector, including successes and challenges with its use, and opportunities for enhancement. This half day workshop will include: A policy update from the Office of Management and Budget; An update on the NIST Risk Management Framework and the Cybersecurity Framework; Industry panels on risk management, automation, and industry approaches to risk management in the system development lifecycle; A risk management tool demonstration; and...

Updates

Open Meeting of the Information Security and Privacy Advisory Board (ISPAB) - October 2017

October 3, 2017
https://csrc.nist.gov/news/2017/open-meeting-of-the-ispab-(october-2017)

The Information Security and Privacy Advisory Board (ISPAB) will meet October 25-27, 2017. All sessions will be open to the public.

Updates

NIST National Cybersecurity Center of Excellence (NCCoE) Releases Draft SP 1800-12, Derived Personal Identity Verification (PIV) Credentials

October 2, 2017
https://csrc.nist.gov/news/2017/nist-nccoe-releases-draft-sp-1800-12

NIST's National Cybersecurity Center of Excellence (NCCoE) Releases Draft SP 1800-12, Derived Personal Identity Verification (PIV) Credentials

Updates

NIST Announces the Release of a Discussion Draft of Special Publication (SP) 800-37, Revision 2, Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy

September 28, 2017
https://csrc.nist.gov/news/2017/nist-releases-sp-800-37-rev2-discussion-draft

NIST Announces the Release of a Discussion Draft of Special Publication (SP) 800-37, Revision 2, Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy

Publications SP 800-195 (Final)

2016 NIST/ITL Cybersecurity Program Annual Report

September 28, 2017
https://csrc.nist.gov/pubs/sp/800/195/final

Abstract: Title III of the E-Government Act of 2002, entitled the Federal Information Security Management Act (FISMA) of 2002, requires NIST to prepare an annual public report on activities undertaken in the previous year, and planned for the coming year, to carry out responsibilities under this law. The prim...

Publications SP 800-190 (Final)

Application Container Security Guide

September 25, 2017
https://csrc.nist.gov/pubs/sp/800/190/final

Abstract: Application container technologies, also known as containers, are a form of operating system virtualization combined with application software packaging. Containers provide a portable, reusable, and automatable way to package and run applications. This publication explains the potential security con...

Publications Journal Article (Final)

Alexa, Can I Trust You?

September 22, 2017
https://csrc.nist.gov/pubs/journal/2017/09/alexa-can-i-trust-you/final

Journal: Computer (IEEE Computer) Abstract: Several recent incidents highlight significant security and privacy risks associated with intelligent virtual assistants (IVAs). Better diagnostic testing of IVA ecosystems can reveal such vulnerabilities and lead to more trustworthy systems.

Updates

NIST Releases NISTIR 8183, Cybersecurity Framework Manufacturing Profile

September 19, 2017
https://csrc.nist.gov/news/2017/nist-releases-nistir-8183

NIST Releases NISTIR 8183, Cybersecurity Framework Manufacturing Profile

Updates

NIST Releases NISTIR 8192, Enhancing Resilience of the Internet and Communications Ecosystem

September 19, 2017
https://csrc.nist.gov/news/2017/nist-releases-nistir-8192

NISTIR 8192, “Enhancing Resilience of the Internet and Communications Ecosystem,” is now available

Updates

Welcome to the New CSRC.nist.gov

September 18, 2017
https://csrc.nist.gov/news/2017/welcome-to-the-new-csrc-nist-gov

A major update to CSRC.nist.gov has officially launched!

Publications Conference Paper (Final)

Evaluating the Effects of Cyber-Attacks on Cyber Physical Systems using a Hardware-in-the-Loop Simulation Testbed

September 18, 2017
https://csrc.nist.gov/pubs/conference/2017/09/18/evaluating-the-effects-of-cyberattacks-on-cps/final

Conference: 2017 Resilience Week (RWS) Abstract: Cyber-Physical Systems (CPS) consist of embedded computers with sensing and actuation capability, and are integrated into and tightly coupled with a physical system. Because the physical and cyber components of the system are tightly coupled, cyber-security is important for ensuring the system funct...

Publications IR 8192 (Final)

Enhancing Resilience of the Internet and Communications Ecosystem: A NIST Workshop Proceedings

September 18, 2017
https://csrc.nist.gov/pubs/ir/8192/final

Abstract: These proceedings document the July 11-12, 2017 "Enhancing Resilience of the Internet and Communications Ecosystem" workshop led by the National Institute of Standards and Technology. Executive Order 13800, "Strengthening the Cybersecurity of Federal Networks and Critical Infrastructure” required th...

<< first   < previous   31     32     33     34     35     36     37     38     39     40     41     42     43     44     45     46     47     48     49     50     51     52     53     54     55  next >  last >>