Under active development Content is continuously updated and improved
Home / U.S. Federal
U.S. Federal

U.S. Federal Security Frameworks

U.S. Federal government security frameworks including NIST, FedRAMP, and DoD requirements. 8663 controls across 36 frameworks.

v5.2.0 U.S. Federal 1,196 controls

NIST SP 800-53

Security and Privacy Controls for Information Systems and Organizations

20 Families Framework
v5 U.S. Federal 410 controls

FedRAMP Rev 5

Federal Risk and Authorization Management Program Security Baselines

18 Families Framework
v0.9.0-beta U.S. Federal 60 indicators

FedRAMP 20x KSI

Key Security Indicators for FedRAMP 20x authorization

11 Categories Framework
vRev 5 U.S. Federal DoD 622 controls

DoD SRG

DoD Cloud Computing Security Requirements Guide - FedRAMP+ controls by Impact Level

20 Families Framework
vV2R4 U.S. Federal DoD 94 findings

Kubernetes STIG

DoD Security Technical Implementation Guide for Kubernetes container orchestration

9 Components Framework
v1.0 U.S. Federal 72 actions

NIST AI RMF

AI Risk Management Framework Playbook - Suggested actions for trustworthy AI

4 Functions Framework
v2014 U.S. Federal 922 controls

ITSG-33

IT Security Risk Management - Canadian Government Security Control Catalogue

17 Families Framework
v1.1 U.S. Federal 42 tasks

NIST SSDF

Secure Software Development Framework - Practices for integrating security into SDLC

4 Groups Framework
vRev 2 U.S. Federal 110 requirements

NIST SP 800-171

Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations

14 Families Framework
v2.0 U.S. Federal DoD 110 practices

CMMC

Cybersecurity Maturity Model Certification for DoD contractors

14 Domains Framework
vRev 5 U.S. Federal 419 controls

GovRAMP

Government Risk and Authorization Management Program - Security Baselines for State and Local Government Cloud Services

17 Families Framework
vRev 1 U.S. Federal 307 controls

NIST SP 800-161

Supply Chain Risk Management

20 Families Framework
vRev 3 U.S. Federal 382 requirements

NIST SP 800-171 Rev 3

CUI Protection Requirements Rev 3

17 Families Framework
vRev 3 U.S. Federal 638 requirements

NIST SP 800-171A Rev 3

Assessing CUI Security Rev 3

17 Families Framework
vRev 2 U.S. Federal 407 requirements

NIST SP 800-171A

Assessing CUI Security Requirements

14 Families Framework
v2021 U.S. Federal 35 requirements

NIST SP 800-172

Enhanced Security for CUI

10 Families Framework
v2020 U.S. Federal 7 requirements

NIST SP 800-207 Zero Trust

Zero Trust Architecture

1 Tenet Framework
v1.1 U.S. Federal 60 practices

NIST SP 800-218 SSDF

Secure Software Development Framework

4 Groups Framework
v1.0 U.S. Federal 261 requirements

NIST AI 600-1

Artificial Intelligence Risk Management

19 Functions Framework
v2024 U.S. Federal 59 requirements

45 CFR 155.260

CMS Privacy and Security Standards

1 Section Framework
v5.9.3 U.S. Federal 232 requirements

FBI CJIS

Criminal Justice Information Services Security Policy

10 Policy Areas Framework
v2023 U.S. Federal 214 principles

US Data Privacy Framework

US-EU Data Privacy Framework

3 Categories Framework
v3.0 U.S. Federal 117 capabilities

DHS TIC 3.0

Trusted Internet Connections

2 Use Cases Framework
v2024 U.S. Federal 38 goals

CISA CPG

Cross-Sector Cybersecurity Performance Goals

5 Categories Framework
v2024 U.S. Federal 15 requirements

CISA SSDAF

Secure Software Development Attestation Form

4 Sections Framework
v2.0 U.S. Federal DoD 16 practices

CMMC 2.0 Level 1

Cybersecurity Maturity Model Certification Level 1

7 Domains Framework
v2.0 U.S. Federal DoD 59 objectives

CMMC 2.0 Level 1 AOS

CMMC Level 1 Assessment Objectives

6 Domains Framework
v2024 U.S. Federal DoD 202 activities

DoD Zero Trust Roadmap

DoD Zero Trust Strategy Roadmap

7 Pillars Framework
v2.0 U.S. Federal DoD 58 capabilities

DoD ZTA Reference Architecture

DoD Zero Trust Reference Architecture

8 Pillars Framework
v2021 U.S. Federal 16 requirements

Executive Order 14028

Improving the Nations Cybersecurity

16 Sections Framework
v2024 U.S. Federal 38 requirements

FCA CRM

Farm Credit Administration Cyber Risk Management

1 Section Framework
v2024 U.S. Federal 8 principles

FIPPs

Fair Information Practice Principles

8 Categories Framework
v2024 U.S. Federal 57 requirements

GLBA (16 CFR 314)

Gramm-Leach-Bliley Act Safeguards Rule

1 Section Framework
v2013 U.S. Federal 1,114 requirements

HIPAA Simplification 2013

HIPAA Administrative Simplification

1 Subpart Framework
v2024 U.S. Federal 249 requirements

NERC CIP

Critical Infrastructure Protection Standards

49 Standards Framework
v2023 U.S. Federal 17 requirements

SEC Cybersecurity Rule

SEC Cybersecurity Risk Management Rule

2 Sections Framework