Date Published: November 2016 (updated 3/21/2018)
Supersedes:
SP 800-160 (01/03/2018)
Planning Note (7/14/2020):
A supplement to Appendix D is now available. Also see NIST's Systems Security Engineering (SSE) Project.
, ,
Access Control; Audit and Accountability; Awareness and Training; Configuration Management; Contingency Planning; Identification and Authentication; Incident Response; Maintenance; Media Protection; Personnel Security; Physical and Environmental Protection; Planning; Program Management; Risk Assessment; Assessment, Authorization and Monitoring; System and Communications Protection; System and Information Integrity; System and Services Acquisition
Publication:
SP 800-160 Vol. 1 (DOI)
Local Download
Supplemental Material:
Appendix D Supplement (xls)
Systems Security Engineering (SSE) Project (web)
"Rethinking Cybersecurity from the Inside Out" (blog post) (other)
Other Parts of this Publication:
SP 800-160 Vol. 2
Document History:
03/21/18: SP 800-160 Vol. 1 (Final)
Security and Privacy
planning; risk assessment; trustworthiness
Laws and Regulations
E-Government Act