Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search CSRC

Use this form to search content on CSRC pages.

For a phrase search, use " "


Limit results to content tagged with of the following topics:
Showing 1101 through 1125 of 1449 matching records.
Updates

NIST Announces the Release of a Discussion Draft of Special Publication (SP) 800-37, Revision 2, Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy

September 28, 2017
https://csrc.nist.gov/news/2017/nist-releases-sp-800-37-rev2-discussion-draft

NIST Announces the Release of a Discussion Draft of Special Publication (SP) 800-37, Revision 2, Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy

Publications SP 800-195 (Final)

2016 NIST/ITL Cybersecurity Program Annual Report

September 28, 2017
https://csrc.nist.gov/pubs/sp/800/195/final

Abstract: Title III of the E-Government Act of 2002, entitled the Federal Information Security Management Act (FISMA) of 2002, requires NIST to prepare an annual public report on activities undertaken in the previous year, and planned for the coming year, to carry out responsibilities under this law. The prim...

Publications SP 800-190 (Final)

Application Container Security Guide

September 25, 2017
https://csrc.nist.gov/pubs/sp/800/190/final

Abstract: Application container technologies, also known as containers, are a form of operating system virtualization combined with application software packaging. Containers provide a portable, reusable, and automatable way to package and run applications. This publication explains the potential security con...

Publications Journal Article (Final)

Alexa, Can I Trust You?

September 22, 2017
https://csrc.nist.gov/pubs/journal/2017/09/alexa-can-i-trust-you/final

Journal: Computer (IEEE Computer) Abstract: Several recent incidents highlight significant security and privacy risks associated with intelligent virtual assistants (IVAs). Better diagnostic testing of IVA ecosystems can reveal such vulnerabilities and lead to more trustworthy systems.

Updates

NIST Releases NISTIR 8183, Cybersecurity Framework Manufacturing Profile

September 19, 2017
https://csrc.nist.gov/news/2017/nist-releases-nistir-8183

NIST Releases NISTIR 8183, Cybersecurity Framework Manufacturing Profile

Updates

NIST Releases NISTIR 8192, Enhancing Resilience of the Internet and Communications Ecosystem

September 19, 2017
https://csrc.nist.gov/news/2017/nist-releases-nistir-8192

NISTIR 8192, “Enhancing Resilience of the Internet and Communications Ecosystem,” is now available

Updates

Welcome to the New CSRC.nist.gov

September 18, 2017
https://csrc.nist.gov/news/2017/welcome-to-the-new-csrc-nist-gov

A major update to CSRC.nist.gov has officially launched!

Publications Conference Paper (Final)

Evaluating the Effects of Cyber-Attacks on Cyber Physical Systems using a Hardware-in-the-Loop Simulation Testbed

September 18, 2017
https://csrc.nist.gov/pubs/conference/2017/09/18/evaluating-the-effects-of-cyberattacks-on-cps/final

Conference: 2017 Resilience Week (RWS) Abstract: Cyber-Physical Systems (CPS) consist of embedded computers with sensing and actuation capability, and are integrated into and tightly coupled with a physical system. Because the physical and cyber components of the system are tightly coupled, cyber-security is important for ensuring the system funct...

Publications IR 8192 (Final)

Enhancing Resilience of the Internet and Communications Ecosystem: A NIST Workshop Proceedings

September 18, 2017
https://csrc.nist.gov/pubs/ir/8192/final

Abstract: These proceedings document the July 11-12, 2017 "Enhancing Resilience of the Internet and Communications Ecosystem" workshop led by the National Institute of Standards and Technology. Executive Order 13800, "Strengthening the Cybersecurity of Federal Networks and Critical Infrastructure” required th...

Publications Conference Paper (Final)

Cloud Security Automation Framework

September 18, 2017
https://csrc.nist.gov/pubs/conference/2017/09/18/cloud-security-automation-framework/final

Conference: 2017 IEEE 2nd International Workshops on Foundations and Applications of Self* Systems (FAS*W) Abstract: Cloud services have gained tremendous attention as a utility paradigm and have been deployed extensively across a wide range of fields. However, Cloud security is not catching up to the fast adoption of its services and remains one of the biggest challenges for Cloud Service Providers (CSPs) and Clo...

Publications Project Description (Final)

Securing Property Management Systems: Cybersecurity for the Hospitality Sector

September 13, 2017
https://csrc.nist.gov/pubs/pd/2017/09/13/securing-property-management-systems/final

Abstract: Hospitality organizations rely on Property Management Systems (PMS) for daily tasks, planning, and record keeping. As the operations hub, the PMS interfaces with several services and components within a hotel’s IT system, such as Point-of-Sale (POS) systems, door locks, Wi-Fi networks, and other gue...

Publications IR 8183 (Final) (Withdrawn)

Cybersecurity Framework Manufacturing Profile

September 8, 2017

https://csrc.nist.gov/pubs/ir/8183/final

Abstract: This document provides the Cybersecurity Framework (CSF) implementation details developed for the manufacturing environment. The "Manufacturing Profile" of the Cybersecurity Framework can be used as a roadmap for reducing cybersecurity risk for manufacturers that is aligned with manufacturing s...

Events

2017 HIPAA Conference

September 5, 2017 - September 6, 2017
https://csrc.nist.gov/events/2017/hipaa-2017-safeguarding-health-information-buil

NIST and the Department of Health and Human Services (HHS), Office for Civil Rights (OCR) are pleased to co-host the 10th annual conference, Safeguarding Health Information: Building Assurance through HIPAA Security, on September 5-6, 2017 at the Hyatt Regency, Washington, D.C. The conference will explore the current healthcare cybersecurity landscape and the Health Insurance Portability and Accountability Act (HIPAA) Security Rule. This event will highlight the present state of healthcare cybersecurity, and practical strategies, tips and techniques for implementing the HIPAA Security Rule....

Events

FCSM Forum - Aug 2017

August 16, 2017 - August 16, 2017
https://csrc.nist.gov/events/2017/federal-computer-security-managers-forum-meeting

Presentations & Speakers at a Glance: Overview of NCCIC and Unclassified Threat Briefing, Jeremiah Glenn & Austin Cusak, DHS; Developing a Cybersecurity Scorecard at USDA Farm Service Agency, Jeff Wagner, USDA Farm Service Agency. NOTE: FORUM MEETINGS ARE OPEN TO ONLY FEDERAL/STATE EMPLOYEES, HIGHER EDUCATION EMPLOYEES, AND THEIR DESIGNATED SUPPORT CONTRACTORS. REGISTRANTS MUST USE A .GOV, .EDU, OR .MIL ADDRESS FOR SIGN-UP. SUPPORT CONTRACTORS MUST INDICATE THE AGENCY OR ORGANIZATION THEY SUPPORT. The Federal Computer Security Program Managers Forum (the "Forum") is an informal...

Updates

NIST Releases the Initial Public Draft of Special Publication 800-53, Revision 5, Security and Privacy Controls for Information Systems and Organizations

August 15, 2017
https://csrc.nist.gov/news/2017/nist-release-first-draft-sp-800-53-rev-5

NIST Releases the Initial Public Draft of Special Publication 800-53, Revision 5, Security and Privacy Controls for Information Systems and Organizations.

Publications SP 800-181 (Final) (Withdrawn)

National Initiative for Cybersecurity Education (NICE) Cybersecurity Workforce Framework

August 7, 2017

https://csrc.nist.gov/pubs/sp/800/181/final

Abstract: This publication describes the National Initiative for Cybersecurity Education (NICE) Cybersecurity Workforce Framework (NICE Framework), a reference structure that describes the interdisciplinary nature of the cybersecurity work. It serves as a fundamental reference resource for describing and shar...

Publications IR 8188 (Final)

Key Performance Indicators for Process Control System Cybersecurity Performance Analysis

August 3, 2017
https://csrc.nist.gov/pubs/ir/8188/final

Abstract: The National Institute of Standards and Technology has constructed a testbed to measure the performance impact induced by cybersecurity technologies on Industrial Control Systems (ICS). The testbed allows researchers to emulate real-world industrial manufacturing processes and their control systems...

Updates

NCCoE Secure Inter-Domain Routing Building Block

August 2, 2017
https://csrc.nist.gov/news/2017/nccoe-secure-inter-domain-routing-building-block

NIST invites organizations to provide products and technical expertise to support and demonstrate security platforms for the Secure Inter-Domain Routing Building Block. Participation in the building block is open to all interested organizations.

Publications Conference Paper (Final)

An Analysis of Vulnerability Trends, 2008-2016

July 25, 2017
https://csrc.nist.gov/pubs/conference/2017/07/25/an-analysis-of-vulnerability-trends-20082016/final

Conference: 2017 IEEE International Conference on Software Quality Reliability and Security (QRS-C 2017) Abstract: Computer security has been a subject of serious study for at least 40 years, and a steady stream of innovations has improved our ability to protect networks and applications. But attackers have adapted and changed methods over the years as well. Where do we stand today in the battle between attacker...

Publications Project Description (Final)

Secure Inter-Domain Routing--Part 1: Route Hijacks

July 6, 2017
https://csrc.nist.gov/pubs/pd/2017/07/06/secure-interdomain-routingpart-1-route-hijacks/final

Abstract: Since the creation of the internet, the Border Gateway Protocol (BGP) has been the default routing protocol to route traffic among organizations (Internet Service Providers (ISPs) and Autonomous Systems (ASes)). While the BGP protocol performs adequately in identifying viable paths that reflect loca...

Events

FISSEA 30th Annual Conference

June 19, 2017 - June 19, 2017
https://csrc.nist.gov/events/2017/fissea-30th-annual-conference

30th Annual FISSEA Conference June 19, 2017 @ NIST - Gaithersburg, MD USA “Securing the Future to Infinity and Beyond: 30 years of Improving Cybersecurity through Awareness, Training, and Education” June 19, 2017 Agenda FISSEA Chairperson (right), and Coordinator (left) 2016 FISSEA Educator of the Year Presented to Prof. Sushil Jajodia Gretchen Morris, 2015 FISSEA Educator of the Year, presented the 2016 FISSEA Educator of the Year award to Prof. Sushil Jajodia, George Mason University on June 19, 2017. The FISSEA Educator of the Year award recognizes an individual who...

Events

Privacy Risk Assessment: A Prerequisite for Privacy Risk Management

June 5, 2017 - June 5, 2017
https://csrc.nist.gov/events/2017/privacy-risk-assessment-a-prerequisite-for-privac

As part of an ongoing series of workshops on privacy engineering and risk management, NIST will host a public workshop on June 5th in Gaithersburg, Maryland on privacy risk assessments. This workshop builds off the concepts introduced in January 2017 in NIST Internal Report 8062 (An Introduction to Privacy Engineering and Risk Management in Federal Systems). Participants will discuss the function of privacy risk assessments as a prerequisite for conducting privacy risk management, and the role of privacy risk models. This discussion will assist NIST in the development of a body of guidance on...

Updates

Open Meeting of the Information Security and Privacy Advisory Board (ISPAB)

June 5, 2017
https://csrc.nist.gov/news/2017/open-meeting-of-the-ispab-(june-2017)

The Information Security and Privacy Advisory Board (ISPAB) will meet June 28-30, 2017. All sessions will be open to the public.

<< first   < previous   33     34     35     36     37     38     39     40     41     42     43     44     45     46     47     48     49     50     51     52     53     54     55     56     57  next >  last >>