Skip to main content

NOTICE: Due to a lapse in annual appropriations, most of this website is not being updated. Learn more.

Form submissions will still be accepted but will not receive responses at this time. Sections of this site for programs using non-appropriated funds (such as NVLAP) or those that are excepted from the shutdown (such as CHIPS and NVD) will continue to be updated.

U.S. flag

An official website of the United States government

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Assessing Implementation of Controlled Unclassified Information (CUI) Security Requirements

Published

Author(s)

Nedim S. Goren, Jody L. Jacobs, Larry Feldman, Gregory A. Witte

Abstract

This bulletin summarizes the information found in NIST SP 800-171A: Assessing Security Requirements for Controlled Unclassified Information (CUI) which provides federal and nonfederal organizations with assessment procedures and a methodology that can be employed to conduct assessments of the CUI security requirements in NIST SP 800-171.
Citation
ITL Bulletin -

Keywords

Assessment, Assessment Method, Assessment Object, Assessment Procedure, Assurance, Controlled Unclassified Information, CUI Registry, Nonfederal Organization, Nonfederal System, Security Assessment

Citation

Goren, N. , Jacobs, J. , Feldman, L. and Witte, G. (2018), Assessing Implementation of Controlled Unclassified Information (CUI) Security Requirements, ITL Bulletin, National Institute of Standards and Technology, Gaithersburg, MD, [online], https://tsapps.nist.gov/publication/get_pdf.cfm?pub_id=926380 (Accessed October 9, 2025)

Issues

If you have any questions about this publication or are having problems accessing it, please contact [email protected].

Created July 27, 2018, Updated January 27, 2020
Was this page helpful?