NIST SP 800-115
E532557
NIST SP 800-115 is a National Institute of Standards and Technology guideline that provides a technical framework and best practices for conducting information security testing and assessments.
Statements (49)
| Predicate | Object |
|---|---|
| instanceOf |
NIST Special Publication
ⓘ
information security guideline ⓘ technical guide ⓘ |
| appliesTo |
federal information systems
ⓘ
organizational information systems ⓘ |
| countryOfOrigin |
United States of America
ⓘ
surface form:
United States
|
| covers |
application security testing
ⓘ
file integrity checking ⓘ log review ⓘ network scanning ⓘ password cracking ⓘ social engineering testing ⓘ virus detection ⓘ vulnerability scanning ⓘ war dialing ⓘ war driving ⓘ wireless security testing ⓘ |
| defines |
roles and responsibilities in security testing
ⓘ
security test process phases ⓘ types of security testing ⓘ |
| focusesOn |
information security testing
ⓘ
penetration testing ⓘ security assessment ⓘ security test execution ⓘ security test planning ⓘ security test reporting ⓘ vulnerability assessment ⓘ |
| objective |
improve effectiveness of security assessments
ⓘ
standardize security testing approaches ⓘ support organizations in planning security assessments ⓘ |
| provides |
best practices for information security testing
ⓘ
guidance on conducting security tests ⓘ guidance on planning security tests ⓘ guidance on post-testing activities ⓘ technical framework for security testing ⓘ |
| publisher | National Institute of Standards and Technology NERFINISHED ⓘ |
| relatedTo |
NIST Risk Management Framework
NERFINISHED
ⓘ
NIST SP 800-30 NERFINISHED ⓘ NIST SP 800-37 NERFINISHED ⓘ NIST SP 800-53 NERFINISHED ⓘ |
| targetAudience |
IT auditors
ⓘ
information security managers ⓘ security practitioners ⓘ system owners ⓘ |
| title | Technical Guide to Information Security Testing and Assessment NERFINISHED ⓘ |
| usedFor |
designing security test programs
ⓘ
improving organizational security posture ⓘ supporting certification and accreditation ⓘ supporting risk assessments ⓘ |
Referenced by (2)
Full triples — surface form annotated when it differs from this entity's canonical label.