NIST SP 800-218A

Secure Software Development Practices for Generative AI and Dual-Use Foundation Models: An SSDF Community Profile

Date Published: July 2024

Author(s)

Harold Booth (NIST), Murugiah Souppaya (NIST), Apostol Vassilev (NIST), Michael Ogata (NIST), Martin Stanley (CISA), Karen Scarfone (Scarfone Cybersecurity)

Abstract

Keywords

artificial intelligence; artificial intelligence model; cybersecurity risk management; generative artificial intelligence; secure software development; Secure Software Development Framework (SSDF); software acquisition; software development; software security
Control Families

None selected

Documentation

Publication:
https://doi.org/10.6028/NIST.SP.800-218A
Download URL

Supplemental Material:
None available

Document History:
04/29/24: SP 800-218A (Draft)
07/26/24: SP 800-218A (Final)

Topics

Security and Privacy

acquisition, risk management

Technologies

artificial intelligence, software & firmware

Laws and Regulations

Executive Order 14110