NIST, DOD, intelligence agencies join forces to secure US cyber infrastructure
The National Institute of Standards and Technology (NIST), in partnership with the Department of Defense (DOD), the Intelligence Community (IC), and the Committee on National Security Systems (CNSS), has released the first installment of a three-year effort to build a unified information security framework for the entire federal government. Historically, information systems at civilian agencies have operated under different security controls than military and intelligence information systems. This installment is titled NIST Special Publication 800-53, Revision 3, Recommended Security Controls for Federal Information Systems and Organizations. “The common security control catalog is a critical step that effectively marshals our resources,” says Ron Ross, NIST project leader for the joint task force. “It also focuses our security initiatives to operate effectively in the face of changing threats and vulnerabilities. The unified framework standardizes the information security process that will also produce significant cost savings through standardized risk management policies, procedures, technologies, tools and techniques.”
This publication is a revised version of the security control catalog that was previously published in response to the Federal Information Security Management Act (FISMA) of 2002. This special publication contains the catalog of security controls and technical guidelines that federal agencies use to protect their information and technology infrastructure.
When complete, the unified framework will result in the defense, intelligence and civil communities using a common strategy to protect critical federal information systems and associated infrastructure. This ongoing effort is consistent with President Obama’s call for “integrating all cybersecurity policies for the government” in his May 29 speech on securing the U.S. cybersecurity infrastructure.
The revised security control catalog in SP 800-53 provides the most state-of-the-practice set of safeguards and countermeasures for information systems ever developed. The updated security controls—many addressing advanced cyber threats—were developed by a joint task force that included NIST, DOD, the IC and the CNSS with specific information from databases of known cyber attacks and threat information.
Additional updates to key NIST publications that will serve the entire federal government are under way. These will include the newly revised SP 800-37, which will transform the current certification and accreditation process into a near real-time risk management process that focuses on monitoring the security state of federal information systems, and SP 800-39, which is an enterprise-wide risk management guideline that will expand the risk management process.
Source: National Institute of Standards and Technology (NIST)
Related
- New computer security guide can help safeguard your small businessTue, 6 Oct 2009, 20:17:41 EDT
- Argonne develops program for cyber security 'neighborhood watch'Thu, 16 Jul 2009, 16:15:28 EDT
- New publication offers security tips for WiMAX networksWed, 7 Oct 2009, 9:08:48 EDT
- Wake-up call: Draft security pub looks at cell phones, PDAsThu, 10 Jul 2008, 11:42:26 EDT
- How secure is your network? NIST model knowsWed, 23 Jul 2008, 15:14:41 EDT
Other sources
- NIST, DOD, intelligence agencies join forces to secure US cyber infrastructurefrom Science CentricThu, 18 Jun 2009, 8:49:11 EDT
Latest Science Newsletter
Get the latest and most popular science news articles of the week in your Inbox!Learn more about
Popular science news articles
- Scientists visualize how bacteria talk to one another
- Findings show nanomedicine promising for treating spinal cord injuries
- Deep creep means milder, more frequent earthquakes along Southern California's San Jacinto fault
- Developmental delay could stem from nicotinic receptor deletion
- Young tennis players who play only 1 sport are more prone to injuries
- African desert rift confirmed as new ocean in the making
- Why nice guys usually get the girls
- Does green tea prevent cancer? Evidence continues to brew, but questions remain
- Digital 'plaster' for monitoring vital signs undergoes first clinical trials
- Higher carotid arterial stenting rates associated with poorer clinical outcomes
- African desert rift confirmed as new ocean in the making
- 1 shot of gene therapy and children with congenital blindness can now see
- Scientists discover influenza's Achilles heel: Antioxidants
- Cleanliness is next to godliness: New research shows clean smells promote moral behavior
- Super typhoon Lupit heading west in the Philippine Sea
- African desert rift confirmed as new ocean in the making
- Common plants can eliminate indoor air pollutants
- Study reveals a 'missing link' in immune response to disease
- Reduction in glycotoxins from heat-processing of foods reduces risk of chronic disease
- Digital 'plaster' for monitoring vital signs undergoes first clinical trials