Security Content Automation Protocol: Difference between revisions

Content deleted Content added
Oxyaro (talk | contribs)
Add SCAP version 1.3 and fix SCAP version 1.0 release date
Line 25:
Starting with SCAP version 1.3 (February, 2018)
* [https://csrc.nist.gov/projects/Software-Identification-SWID Software Identification (SWID) tags]
 
===SCAP Checklists===
Security Content Automation Protocol (SCAP) checklists standardize and enable automation of the linkage between computer security configurations and the [[National Institute of Standards and Technology|NIST]] [[NIST Special Publication 800-53|Special Publication 800-53]] (SP 800-53) controls framework. The current{{when?|date=February 2016}} version of SCAP is meant to perform initial measurement and continuous monitoring of security settings and corresponding SP 800-53 controls. Future versions will likely standardize and enable automation for implementing and changing security settings of corresponding SP 800-53 controls. In this way, SCAP contributes to the implementation, assessment, and monitoring steps of the NIST Risk Management Framework. Accordingly, SCAP forms an integral part of the NIST [http://csrc.nist.gov/groups/SMA/fisma/ FISMA] implementation project.
 
==SCAP Validation Program==
Line 42 ⟶ 43:
*[https://cyber.trackr.live SCAP Search]
 
{{Authority control}}
 
[[Category:Security compliance]]