NIST SP 800-53 Revision 5 Status Update

From: NIST

PROJECTED PUBLICATION DATE FOR INITIAL PUBLIC DRAFT — MARCH 28, 2017

Greetings All,

Thanks very much for the input we have received for the initial public draft of SP 800-53 Revision 5. We really appreciate all of the valuable information from those “in the field” applying the guidelines and implementing the security and privacy controls. Our publications benefit greatly from your input.

We are making significant progress on the Rev 5 update. In addition to our usual update of security and privacy control content, NIST is considering some structural and formatting changes for SP 800-53 Rev 5 and we want to keep you informed about how the revision is shaping up. Please note that the proposed changes described below have no effect on the actual security and privacy controls, and organizations would not be expected to make updates to security plans, tools, or templates outside of the normal update schedule to accommodate these changes.

Here are a few proposed changes that you will likely see in the upcoming draft:

  • Removal of the term “federal” from the title and throughout the publication to the extent appropriate. This change facilitates inclusiveness for all types of organizations (e.g., state, local, and tribal governments, industry, academia) and promotes the view that security and privacy are national areas of concern, not just for the federal government. At the same time, use of the guidelines by federal organizations (or any type of organization) is unaffected.
  • Replacement of the term “information system” with “system” throughout the publication. This change facilitates inclusiveness for all types of systems (e.g., industrial/process control systems, cyber physical systems, weapons systems, IoT devices, etc.), while not affecting use within “information systems.”

Read Complete Notice

Facebooktwittergoogle_plusredditpinterestlinkedinmail

Leave a Reply

Your email address will not be published.

Please Answer: *