NIST publishes The Technical Specification for the Security Content Automation Protocol (SCAP) (NIST SP 800-126 Rev. 3) and an annex to this publication, SCAP 1.3 Component Specification Version Updates: An Annex to NIST Special Publication 800-126 Revision 3, both of which define the technical composition of SCAP version 1.3 in terms of its component specifications, their interrelationships and interoperation, and the requirements for SCAP content. SCAP is a suite of specifications that standardize the format and nomenclature by which software flaw and security configuration information is communicated, both to machines and humans.
Sign up for updates from NIST
Created February 14, 2018, Updated March 21, 2018