FIPS 200
E532550
FIPS 200 is a U.S. federal standard that establishes minimum security requirements for federal information and information systems, forming a core part of the government’s information security framework.
Statements (46)
| Predicate | Object |
|---|---|
| instanceOf |
Federal Information Processing Standard
ⓘ
U.S. federal information security standard ⓘ |
| alignedWith | NIST Special Publication 800-53 security controls NERFINISHED ⓘ |
| appliesTo |
U.S. federal executive agencies
ⓘ
federal information ⓘ federal information systems ⓘ |
| basedOnLawOrMandate |
Federal Information Security Management Act
NERFINISHED
ⓘ
Federal Information Security Modernization Act NERFINISHED ⓘ |
| countryOfJurisdiction | United States NERFINISHED ⓘ |
| defines |
minimum security requirements for federal information
ⓘ
minimum security requirements for federal information systems ⓘ |
| dependsOn | security categorization from FIPS 199 ⓘ |
| establishes | minimum baseline of security requirements ⓘ |
| excludes | national security systems ⓘ |
| fullName | Minimum Security Requirements for Federal Information and Information Systems NERFINISHED ⓘ |
| issuedBy |
National Institute of Standards and Technology
NERFINISHED
ⓘ
U.S. Department of Commerce NERFINISHED ⓘ |
| language | English ⓘ |
| partOf |
Federal Information Processing Standards series
NERFINISHED
ⓘ
U.S. federal information security framework ⓘ |
| publicationType | mandatory standard for federal agencies ⓘ |
| relatedTo | FIPS 199 NERFINISHED ⓘ |
| requiresUseOf | NIST Special Publication 800-53 NERFINISHED ⓘ |
| sector | information security ⓘ |
| securityAreasCovered |
access control
ⓘ
audit and accountability ⓘ awareness and training ⓘ configuration management ⓘ contingency planning ⓘ identification and authentication ⓘ incident response ⓘ maintenance ⓘ media protection ⓘ personnel security ⓘ physical and environmental protection ⓘ planning ⓘ risk assessment ⓘ security assessment and authorization ⓘ system and communications protection ⓘ system and information integrity ⓘ systems and services acquisition ⓘ |
| subjectMatter |
federal cybersecurity requirements
ⓘ
information security management ⓘ |
| supports | risk-based selection of security controls ⓘ |
| usedFor |
federal information security compliance
ⓘ
federal information system authorization ⓘ |
Referenced by (2)
Full triples — surface form annotated when it differs from this entity's canonical label.