Use this form to search content on CSRC pages.
The Cyberspace Policy Review (May 2009) served as a driver for both the National Strategy for Trusted Identities in Cyberspace (NSTIC) and the National Initiative for Cybersecurity Education (NICE). Â
Improving Critical Infrastructure Cybersecurity (February 12, 2013) initiated development of the Cybersecurity Framework (CSF).
Creating a National Strategic Computing Initiative (July 29, 2015)
Commission on Enhancing National Cybersecurity (February 9, 2016)
Strengthening the Cybersecurity of Federal Networks and Critical Infrastructure (May 11, 2017)
Federal Cybersecurity Research and Development Strategic Plan (February 5, 2016)
Critical Infrastructure Identification, Prioritization, and Protection (December 17, 2003).
Policy for a Common Identification Standard for Federal Employees and Contractors (August 27, 2004) initiated the development effort for FIPS 201 and other publications and testing related to Personal Identity Verification (PIV).
Office of Management and Budget (OMB) Circular A-11, Preparation, Submission, and Execution of the Budget (updated annually)
Office of Management and Budget (OMB) Circular A-130, Managing Information as a Strategic Resource (July 28, 2016).
Vulnerabilities are "weaknesses in an information system, system security procedures, internal controls, or implementation that could be exploited or triggered by a threat source." [SP 800-37 Rev. 2, Appendix B]