Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Information-Security-News
[Top] [All Lists]

[ISN] NIST updates cryptography manual to help agencies meet FISMA requi

Subject: [ISN] NIST updates cryptography manual to help agencies meet FISMA requirements
Date: Thu, 29 Dec 2005 01:40:54 -0600 (CST)
http://www.gcn.com/vol1_no1/daily-updates/37840-1.html

By Rob Thormeyer 
GCN Staff
12/28/05

The National Institute of Standards and Technology released a revised
cryptography manual that gives federal cybersecurity officials
guidance on how to encrypt and protect sensitive data.

NIST issued the revised Special Publication 800-21-1 [1] - first
released in 1999 - to help government organizations as they comply
with the Federal Information Security Management Act of 2002, which
requires agencies, among other things, to certify and accredit their
IT systems.

The report "is intended to provide a structured, yet flexible set of
guidelines for selecting, specifying, employing and evaluating
cryptographic protection mechanisms in federal information systems -
and thus, makes a significant contribution toward satisfying the
security requirements of" FISMA, NIST said.

In particular, the report gives agencies guidance on selecting
cryptography products, including performing a risk assessment and
identifying security regulations and policies that are applicable to
the agency and system.

NIST tailored the report for federal managers who are responsible for
designing, procuring, installing and operating computer security
systems.

"The goal is to provide these individuals with sufficient information
to allow them to make informed decisions about the cryptographic
methods that will meet their specific needs to protect the
confidentiality, authentication and integrity of data that is
transmitted and/or stored in a system or network," the report said.

[1] http://csrc.nist.gov/publications/nistpubs/800-21-1/sp800-21-1_Dec2005.pdf



_________________________________________
Earn your Master's degree in Information Security ONLINE
www.msia.norwich.edu/csi
Study IA management practices and the latest infosec issues.
Norwich University is an NSA Center of Excellence.

<Prev in Thread] Current Thread [Next in Thread>
  • [ISN] NIST updates cryptography manual to help agencies meet FISMA requirements, InfoSec News <=