Skip to main content
U.S. flag

An official website of the United States government

Dot gov

The .gov means it’s official.
Federal government websites often end in .gov or .mil. Before sharing sensitive information, make sure you’re on a federal government site.

Https

The site is secure.
The https:// ensures that you are connecting to the official website and that any information you provide is encrypted and transmitted securely.

Keith A. Stouffer

Keith Stouffer has been with the Engineering Lab at the National Institute of Standards and Technology (NIST) since 1989, focusing on industrial control system security since 2000. Keith is the Project Manager of the Cybersecurity for Smart Manufacturing Systems Project, working jointly with the NIST Computer Security Division, in cooperation with the public and private sector community, to develop specific guidance on the application of NIST security standards and guidelines to industrial control systems. A major effort of the program has been the update of NIST Special Publication 800-53, Recommended Security Controls for Federal Information Systems, to provide guidance on appropriate safeguards and countermeasures for federal agencies that own, operate, or maintain industrial control systems. Keith is the lead author of Special Publication 800-82 Guide to Industrial Control Systems Security, which provides guidance for the public and private sectors on how to secure industrial control systems while addressing their unique performance, reliability and safety requirements. Keith is also active in the private sector standards community, providing input to the ISA99, IEC 62443 and NERC CIP security standards. During his career, he has received Gold and Bronze Medals from the Department of Commerce and the Gov30 Security Award. Keith holds a Master's degree in Computer Science from Johns Hopkins University and a Bachelor degree in Mechanical Engineering from the University of Maryland.

Publications

Securing Manufacturing Industrial Control Systems: Behavioral Anomaly Detection

Author(s)
Michael P. Powell, James J. McCarthy, CheeYee Tang, Keith A. Stouffer, Timothy A. Zimmerman, William C. Barker, Titilayo Ogunyale, Devin M. Wynne
Industrial control systems (ICS) are used in many industries to monitor and control physical processes. As ICS continue to adopt commercially available

Cybersecurity Framework Manufacturing Profile

Author(s)
Keith A. Stouffer, Timothy A. Zimmerman, CheeYee Tang, Joshua Lubell, Jeffrey A. Cichonski, John McCarthy
This document provides the Cybersecurity Framework (CSF) implementation details developed for the manufacturing environment. The "Manufacturing Profile" of the
Created July 30, 2019