Site icon

What Is NIST 800-172 and Advanced Security Structures

The ongoing rise of state-sponsored Advanced Persistent Threats (APTs) has increased scrutiny of federal and state IT systems security systems. The latest version of CMMC includes a high-maturity level specifically designed to address these threats, which relies primarily on advanced security controls listed in NIST Special Publication 800-172

 

What Is NIST 800-172?

NIST 800-172 addresses APTs by introducing improved or enhanced security requirements to engage the critical security controls covered in NIST SP 800-171. It has been developed to guide organizations in improving their security posture against APTs using advanced security measures. 

Some of the top ways in which NIST 800-172 addresses APTs include:

 

NIST 800-172 Control Families

NIST Special Publication 800-172 builds upon the security requirements outlined in NIST SP 800-171. While it focuses on these enhanced requirements, it is structured similarly to NIST SP 800-171, which organizes its security requirements into 14 families. 

The 14 control families in NIST SP 800-171 (and by extension, relevant to the context of NIST SP 800-172’s enhancements) are:

NIST SP 800-172 enhances these control families with additional requirements to address and mitigate the threats posed by APTs. Due to their sophisticated nature, it focuses on the need for more advanced protective measures.

NIST and Defense-In-Depth for APTs

Defense-in-depth principles are an applied set of enhanced security requirements for protecting CUI. NIST 800-172 defines these three principles as:

The three are complementary, and the components combine to make up a three-pronged whole in the defense-in-depth strategy.

 

What Are Adversary Effect Categories?

Part of the control classification used in NIST 800-172 is “adversary effects,” or how a control addresses threats in a specific way. Because APTs are typically ongoing and multi-faceted, these effects must be tailored to the long-term longevity of the system’s security across different approaches. 

These high-level effects include:

 

Maintain Your CMMC Compliance with Continuum GRC

Continuum GRC is a cloud platform that can take something as routine and necessary as regular vulnerability scanning and reporting under FedRAMP and make it an easy and timely part of business in the public sector. We provide risk management and compliance support for every major regulation and compliance framework on the market, including:

We are the only FedRAMP and StateRAMP-authorized compliance and risk management solution worldwide.

Continuum GRC is a proactive cyber security® and the only FedRAMP and StateRAMP-authorized cybersecurity audit platform worldwide. Call 1-888-896-6207 to discuss your organization’s cybersecurity needs and find out how we can help your organization protect its systems and ensure compliance.

[wpforms id= “43885”]

Exit mobile version