Skip to content
Home / Authority / Agency

NIST

National Institute of Standards and Technology (USA)

The National Institute of Standards and Technology (NIST) is a non-regulatory agency within the U.S. Department of Commerce, renowned for its pivotal role in developing cybersecurity standards, guidelines, and best practices that serve U.S. industry, federal agencies, and the broader public. NIST’s cybersecurity initiatives include the creation of the NIST Cybersecurity Framework (CSF), which provides structured, voluntary guidance for organizations to manage and reduce cybersecurity risks, and is widely adopted across both public and private sectors. NIST’s work is driven by federal mandates, industry needs, and emerging technological challenges, and its resources are designed to be practical and forward-looking, addressing immediate security needs while anticipating future risks. By setting benchmarks for cybersecurity, NIST fosters innovation, enhances risk management, and helps organizations-especially those handling sensitive government information-strengthen their defenses against evolving cyber threats.

NIST SP 800-55 Vol. 2 Measurement Guide for Information Security: Volume 2 — Developing an Information Security Measurement Program

The NIST Special Publication 800-55, Volume 2, titled “Measurement Guide for Information Security,” provides a flexible methodology and workflow for developing an information security measurement program. It is designed to… Read More »NIST SP 800-55 Vol. 2 Measurement Guide for Information Security: Volume 2 — Developing an Information Security Measurement Program

NIST SP 800-55 Vol. 1 Measurement Guide for Information Security: Volume 1 — Identifying and Selecting Measures

NIST Special Publication 800-55 Volume 1, titled “Measurement Guide for Information Security,” provides a flexible and comprehensive approach for developing, selecting, and prioritizing information security measures at the organizational, mission/business,… Read More »NIST SP 800-55 Vol. 1 Measurement Guide for Information Security: Volume 1 — Identifying and Selecting Measures