NIST Special Publication 800 -160
VOLUME 1
System s Security Engineering
Considerations for a Multidisciplinary Approach in the
Engineering of Trustworthy Secure Systems
RON ROSS
MICHAEL McEVILLEY
JANET CARRIER OREN
This publication is available free of charge from:
https://doi.org/10.6028/NIST.SP.800- 160v1
This publication contains systems securit y engineering
considerations for ISO/IEC/IEEE 15288:2015 , Systems
and software engineering — System life cycle processes .
It provides security -related implementation guidance for
the standard and should be used in conjunction with and
as a complement to the standard. NIST Special Publication 800 -160
VOLUME 1
System s Security Engineering
Considerations for a Multidisciplinary Approach in the
Engineering of Trustworthy Secure Systems
RON ROSS
Computer Security Division
National Institute of Standards and Technology
MICHAEL McEVILLEY
The MITRE Corporation
JANET CARRIER OREN
Legg Mason
This publication is available free of charge from:
https://doi.org/10.6028/NIST.SP.800- 160v1
November 2016
INCLUDES UPDATES AS OF 03-21-2018 : PAGE XIII
U.S. Department of Commerce
Penny Pritzker, Secretary
National Institute of Standards and Technology
Willie May, Under Secretary of Commerce for Standards and Technology and Director SPECIAL PUBLICATION 800 -160, VOLUME 1 SYSTEMS SECURITY ENGINEERING
A M ultidisciplinary Approach in the Engineering of Trustworthy Secure Systems
________________________________________________________________________________________________
PAGE i
This publication is available free of charge from: http s://doi.org/10.6028/ NIST.SP.800 -160v1
Authority
This publication has been developed by NIST to further its statutory responsibilities under the
Federal Information Security Modernization Act (FISMA) of 2014, 44 U.S.C. § 3551 et seq., Public Law (P.L.) 113-283. NIST is responsible for developing information security standards
and guidelines, including minimum requirements for federal information systems, but such
standards and guidelines shall not apply to national security systems without the express approval
of appropriate federal officials ex ercising policy authority over such systems. This guideline is
consistent with the requirements of the Office of Management and Budget (OMB) Circular A-130.
Nothing in this publication should be taken to contradict the standards and guidelines made
mandatory and binding on federal agencies by the Secretary of Commerce under statutory
authority. Nor should these guidelines be interpreted as altering or superseding the existing
authorities of the Secretary of Commerce, Director of the OMB, or any other federa l official. This
publication may be used by nongovernmental organizations on a voluntary basis and is not
subject to copyright in the United States. Attribution would, h
NIST.SP.800-160v1 Systems Security Engineering
文档预览
中文文档
260 页
50 下载
1000 浏览
0 评论
0 收藏
3.0分
温馨提示:本文档共260页,可预览 3 页,如浏览全部内容或当前文档出现乱码,可开通会员下载原始文档
本文档由 思安 于 2022-12-05 09:15:54上传分享