U.S. flag   An unofficial archive of your favorite United States government website
Dot gov

Official websites do not use .rip
We are an unofficial archive, replace .rip by .gov in the URL to access the official website. Access our document index here.

Https

We are building a provable archive!
A lock (Dot gov) or https:// don't prove our archive is authentic, only that you securely accessed it. Note that we are working to fix that :)

NIST SP 800-115

Technical Guide to Information Security Testing and Assessment

Date Published: September 2008

Supersedes: SP 800-42 (10/15/2003)

Author(s)

Karen Scarfone (NIST), Murugiah Souppaya (NIST), Amanda Cody (BAH), Angela Orebaugh (BAH)

Abstract

Keywords

Penetration testing; risk assessment; security assessment; security examination; security testing; vulnerability scanning
Control Families

Audit and Accountability; Assessment, Authorization and Monitoring; Risk Assessment; System and Services Acquisition; System and Communications Protection; System and Information Integrity

Documentation

Publication:
https://doi.org/10.6028/NIST.SP.800-115
Download URL

Supplemental Material:
SP 800-115 (EPUB) (epub)

Document History:
09/30/08: SP 800-115 (Final)