Nist Sp 800 30

The purpose of special publication 800 30 is to provide guidance for conducting risk assessments of federal information systems and organizations amplifying the guidance provided in special publication 800 39.
Nist sp 800 30. Nist sp 800 30 guidance tool name. Gary stoneburner nist alice goguen bah alexis feringa bah abstract. Economy and public welfare by providing technical leadership for the nation s measurement and standards infrastructure. Sp 800 30 withdrawn on september 01 2012.
Organizations use risk assessment the first step in the risk management methodology to determine. Special publication 800 30 guide for conducting risk assessments page ii reports on computer systems technology. A supplement to nist special publication 800 171 final public draft 7 06 2020 status. Nist special publication sp 800 30 revision 1 guide for conducting risk assessments relevant core classification.
Publications in nist s special publication sp 800 series present information of interest to the computer security community. Nist special publication 800 30. The information technology laboratory itl at the national institute of standards and technology nist promotes the u s. Guide for conducting risk assessments.
Enhanced security requirements for protecting controlled unclassified information. Risk management is the process of identifying risk assessing risk and taking steps to reduce risk to an acceptable level. Id ra p3 id ra p4 id ra p5 id de p2 pr po p10 contributor. Sp 800 30 page ii reports on computer systems technology the information technology laboratory itl at the national institute of standards and technology promotes the u s.
Nist special publication 800 30 risk management guide for information technology systems july 2002 september 2012 sp 800 30 is superseded in its entirety by the publication of sp 800 30 revision 1 september 2012. A supplement to nist special publication 800 171 final public draft 7 06 2020 status. Economy and public welfare by providing technical. Abstract the purpose of special publication 800 30 is to provide guidance for conducting risk assessments of federal information systems and organizations amplifying the guidance in special publication 800 39.
The series comprises guidelines recommendations technical specifications and annual reports of nist s cybersecurity activities.