Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search CSRC

Use this form to search content on CSRC pages.

For a phrase search, use " "


Limit results to content tagged with of the following topics:
Showing 201 through 225 of 1415 matching records.
Project Pages

Industrial Case Studies - Combinatorial and Pairwise Testing

https://csrc.nist.gov/projects/automated-combinatorial-testing-for-software/combinatorial-methods-in-testing/case-studies-and-examples

Combinatorial testing is being applied successfully in nearly every industry, and is especially valuable for assurance of high-risk software with safety or security concerns. Combinatorial testing is referred to as effectively exhaustive, or pseudo-exhaustive, because it can be as effective as fully exhaustive testing, while reducing test set size by 20X to more than 100X. Case studies below are from many types of applications, including aerospace, automotive, autonomous systems, cybersecurity, financial systems, video games, industrial controls, telecommunications, web applications, and...

Updates

Draft CSF 2.0 Quick Start Guide: Cybersecurity, Enterprise Risk Management, and Workforce Management

March 12, 2025
https://csrc.nist.gov/news/2025/csf-20-cyber-erm-and-workforce-managment-qsg

The latest Quick Start Guide for the NIST Cybersecurity Framework 2.0 is available for public comment through April 25, 2025.

Updates

Considerations for Achieving Crypto Agility: NIST Releases CSWP 39 for Public Comment

March 5, 2025
https://csrc.nist.gov/news/2025/nist-releases-cswp-39-for-public-comment

NIST Cybersecurity White Paper (CSWP), Considerations for Achieving Crypto Agility, provides an in-depth survey of current approaches and considerations to achieving crypto agility.

Updates

Now Open for Public Comment | NIST Cybersecurity Framework 2.0 Profile for Semiconductor Manufacturing

February 27, 2025
https://csrc.nist.gov/news/2025/draft-csf-profile-for-semiconductor-manufacturing

The NIST National Cybersecurity Center of Excellence (NCCoE) along with the SEMI Semiconductor Manufacturing Cybersecurity Consortium has released Draft NIST Internal Report (IR) 8546, Cybersecurity Framework (CSF) 2.0 Semiconductor Manufacturing Community Profile for public comment until 11:59 PM ET on July 30, 2025.

Publications IR 8546 (Initial Public Draft)

Cybersecurity Framework Version 2.0 Semiconductor Manufacturing Profile

February 27, 2025
https://csrc.nist.gov/pubs/ir/8546/ipd

Abstract: This document defines a Cybersecurity Framework (CSF) 2.0 Community Profile with a voluntary, risk-based approach to managing cybersecurity activities and reducing cyber risks for semiconductor development and manufacturing. Collaboratively developed in support of the National Cybersecurity Implemen...

Updates

Integrating Cybersecurity and Enterprise Risk Management | NIST IR 8286 Series Revisions and Updates

February 26, 2025
https://csrc.nist.gov/news/2025/cybersecurity-and-erm-nist-ir-8286-series-revision

NIST has released revisions or updates to all five publications in its Interagency Report (IR) 8286 series. The public comment period is open through April 14, 2025, for the initial public drafts of IR 8286r1, IR 8286Ar1, and IR 8286Cr1.

Project Pages

About the Forum

https://csrc.nist.gov/projects/forum/about-the-forum

The NIST Cybersecurity & Privacy Professionals Forum is co-chaired by representatives of NIST's Information Technology Laboratory, Computer Security Division (CSD) and Applied Cybersecurity Division (ACD). The Forum Secretariat provides the necessary administrative and logistical support for operations. The Forum serves as an important mechanism for NIST to: exchange information directly with cybersecurity and privacy professionals in U.S. federal, state, and local government, and higher education organizations in fulfillment of its leadership mandate under the Federal Information...

Publications IR 8286B (Final)

Prioritizing Cybersecurity Risk for Enterprise Risk Management

February 26, 2025
https://csrc.nist.gov/pubs/ir/8286/b/upd1/final

Abstract: This document is the second in a series that supplements NIST Interagency Report (IR) 8286, Integrating Cybersecurity and Enterprise Risk Management (ERM). This series provides additional detail regarding the enterprise application of cybersecurity risk information; the previous document, NIST IR 82...

Publications IR 8286D (Final)

Using Business Impact Analysis to Inform Risk Prioritization and Response

February 26, 2025
https://csrc.nist.gov/pubs/ir/8286/d/upd1/final

Abstract: While business impact analysis (BIA) has historically been used to determine availability requirements for business continuity, the process can be extended to provide a broad understanding of the potential impacts of any type of loss on the enterprise mission. The management of enterprise risk requi...

Events

FORUM Meeting - February 25, 2025

February 25, 2025 - February 25, 2025
https://csrc.nist.gov/events/2025/forum-meeting-february-25-2025

The Federal Cybersecurity and Privacy Professionals Forum is an informal group sponsored by the National Institute of Standards and Technology (NIST) to promote the sharing of system security and privacy information among federal, state, and local government, and higher education employees. The Forum maintains an extensive e-mail list and holds quarterly meetings to discuss current issues and items of interest to those responsible for protecting non-national security systems. For more information about the Forum and instructions on how to join, see: https://csrc.nist.gov/Projects/forum....

Updates

NIST Releases IR 8532, Workshop Report on Enhancing Security of Devices and Components Across the Supply Chain

February 18, 2025
https://csrc.nist.gov/news/2025/nist-releases-nist-ir-8532

NIST has released Internal Report (IR) 8532, Workshop Report on Enhancing Security of Devices and Components Across the Supply Chain.

Publications IR 8532 (Final)

Workshop on Enhancing Security of Devices and Components Across the Supply Chain

February 18, 2025
https://csrc.nist.gov/pubs/ir/8532/final

Abstract: The National Institute of Standards and Technology (NIST) hosted an in-person, all-day workshop on February 27, 2024, to discuss existing and emerging cybersecurity threats and mitigation techniques for semiconductors throughout their life cycle. The workshop obtained valuable feedback from industry...

Updates

Security and Trust Considerations for Digital Twin Technology | NIST Releases IR 8356

February 14, 2025
https://csrc.nist.gov/news/2025/nist-releases-nist-ir-8356

NIST has published Internal Report (IR) 8356, Security and Trust Considerations for Digital Twin Technology

Publications IR 8356 (Final)

Security and Trust Considerations for Digital Twin Technology

February 14, 2025
https://csrc.nist.gov/pubs/ir/8356/final

Abstract: Digital twin technology enables the creation of electronic representations of real-world entities and the ability to view the states and transitions between states of these entities. This report discusses the concept and purpose of digital twin technology and describes its characteristics, features,...

Project Pages

Combinatorial Testing for AI-Enabled Systems

https://csrc.nist.gov/projects/automated-combinatorial-testing-for-software/autonomous-systems-assurance/ai-enhanced-systems

Talks from Workshop on Combinatorial Testing for Artificial Intelligence-Enabled Systems September 4, 2024 Virginia Tech Research Center, Arlington, VA https://sites.google.com/vt.edu/ct-workshop Ongoing teaching workshops in this area may be found here. The goal of this workshop was to provide practitioners and researchers with a foundational understanding of combinatorial testing techniques and applications to testing AI-enabled software systems (AIES). Participants included staff from Cybersecurity and Infrastructure Security Agency (CISA), Office of Sec. of Defense, Director...

Project Pages

Leadership

https://csrc.nist.gov/projects/mcspwg/leadership

Credits: Ned Goren NED GOREN IT Specialist ITL/CSD/SSA NIST Nedim Goren (Ned) is a security researcher for the NIST Secure Systems and Applications Group. Prior to that Ned was a member of the RMF (FISMA) Team at NIST. Prior to joining NIST, he served as a security control assessor and lead ISSO at the Census Bureau. Ned started conducting security control assessments in 2005, first as a contractor and since 2009 as a federal employee. As lead ISSO, he managed the day-to-day operations of the consolidated Census Bureau ISSOs. At NIST Ned was also a...

Updates

5G Cybersecurity: No SUPI-Based Paging | NIST Releases Draft White Paper for Public Comment

January 30, 2025
https://csrc.nist.gov/news/2025/draft-cswp-38d-is-available-for-public-comment

NIST Initial Public Draft CSWP 36D, No SUPI-Based Paging: Applying 5G Cybersecurity and Privacy Capabilities; is available for public comment. The comment period is open through February 28, 2025.

<< first   < previous   1     2     3     4     5     6     7     8     9     10     11     12     13     14     15     16     17     18     19     20     21     22     23     24     25  next >  last >>