Skip to content
Home / Authority / Agency / NIST

NIST

National Institute of Standards and Technology (USA)

The National Institute of Standards and Technology (NIST) is a non-regulatory agency within the U.S. Department of Commerce, renowned for its pivotal role in developing cybersecurity standards, guidelines, and best practices that serve U.S. industry, federal agencies, and the broader public. NIST’s cybersecurity initiatives include the creation of the NIST Cybersecurity Framework (CSF), which provides structured, voluntary guidance for organizations to manage and reduce cybersecurity risks, and is widely adopted across both public and private sectors. NIST’s work is driven by federal mandates, industry needs, and emerging technological challenges, and its resources are designed to be practical and forward-looking, addressing immediate security needs while anticipating future risks. By setting benchmarks for cybersecurity, NIST fosters innovation, enhances risk management, and helps organizations-especially those handling sensitive government information-strengthen their defenses against evolving cyber threats.

NIST SP 1800-25 Data Integrity: Identifying and Protecting Assets Against Ransomware and Other Destructive Events

NIST SP 1800-25, titled “Data Integrity: Identifying and Protecting Assets Against Ransomware and Other Destructive Events,” provides practical guidance for organizations to identify, protect, and manage their critical assets against… Read More »NIST SP 1800-25 Data Integrity: Identifying and Protecting Assets Against Ransomware and Other Destructive Events

NIST Federal Information Processing Standard (FIPS) Publication 140-3: Security Requirements for Cryptographic Modules

FIPS 140-3 is a mandatory standard for federal agencies and a benchmark for the private sector that defines the security requirements for hardware and software cryptographic modules. It superseded FIPS… Read More »NIST Federal Information Processing Standard (FIPS) Publication 140-3: Security Requirements for Cryptographic Modules

NIST SP 800-37 Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy

NIST Special Publication 800-37, Revision 2, titled “Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy,” provides comprehensive guidelines for applying the… Read More »NIST SP 800-37 Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy

NIST SP 800-39 Managing Information Security Risk: Organization, Mission, and Information System View

NIST SP 800-39 serves as the overarching flagship for information security risk management, providing the high-level governance necessary to align cybersecurity efforts with an organization’s core mission and business objectives.… Read More »NIST SP 800-39 Managing Information Security Risk: Organization, Mission, and Information System View