Skip to main content
U.S. flag

An official website of the United States government

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Ronald S. Ross (Fed)

Computer Scientist, NIST Fellow

Bio:

Ron Ross is a Fellow at the National Institute of Standards and Technology. His focus areas include cybersecurity, systems security engineering, and risk management. Dr. Ross leads the Federal Information Security Modernization Act (FISMA) Implementation Project, which includes the development of security standards and guidelines for the federal government, contractors, and the United States critical infrastructure. His publications include Federal Information Processing Standards (FIPS) 199 (security categorization), FIPS 200 (security requirements), and NIST Special Publication (SP) 800-39 (enterprise risk management), SP 800-53 (security and privacy controls), SP 800-53A (security assessment), SP 800-37 (Risk Management Framework), SP 800-30 (risk assessment), SP 800-160 Volumes 1 and 2 (systems security engineering and cyber resiliency), SP 800-171 (security requirements for nonfederal systems and organizations), and SP 800-171A (security assessments for nonfederal organizations). Dr. Ross leads the Joint Task Force, an interagency group that includes the Department of Defense, Office of the Director National Intelligence, U.S. Intelligence Community, and the Committee on National Security Systems, with responsibility for developing a Unified Information Security Framework for the federal government and its contractors.

Dr. Ross previously served as the Director of the National Information Assurance Partnership, a joint activity of NIST and the National Security Agency. He also supports the U.S. State Department in the international outreach program for cybersecurity and critical infrastructure protection. Dr. Ross has lectured at many universities and colleges including Stanford University, Massachusetts Institute of Technology, Dartmouth College, Naval Postgraduate School, and George Washington University. A graduate of the United States Military Academy at West Point, Dr. Ross served in many leadership and technical positions during his twenty-year career in the United States Army. While assigned to the National Security Agency, Dr. Ross received the Scientific Achievement Award for his work on a national security project and was awarded the Defense Superior Service Medal. Dr. Ross is a five-time recipient of the Federal 100 award for his leadership and technical contributions to cybersecurity projects affecting the federal government and is a recipient of the Presidential Rank Award. He has received the Department of Commerce Gold and Silver Medal Awards and has been inducted into the National Cyber Security Hall of Fame. Dr. Ross has been selected as an (ISC)2 Fellow and inducted into the Information Systems Security Association Hall of Fame receiving its highest honor of Distinguished Fellow.

During his military career, Dr. Ross served as a White House aide and senior technical advisor to the Department of the Army. He is a graduate of the Defense Systems Management College and holds Masters and Ph.D. degrees in Computer Science from the U.S. Naval Postgraduate School specializing in artificial intelligence and robotics.


Projects:

  • Project Leader, FISMA Implementation Project
  • Project Leader, Joint Task Force Transformation Initiative
  • FISMA Standards and Guidelines
  • Enterprise Risk Management
  • Risk Management Framework
  • Software Assurance
  • Security Architecture and Engineering

Awards

Dr. Ross has received numerous private sector awards including the Partnership for Public Service Samuel J. Heyman Service to America Medal for Homeland Security and Law Enforcement, the Applied Computer Security Associates Distinguished Practitioner Award, Government Computer News Government Executive of the Year Award, Vanguard Chairman’s Award, Government Technology Research Alliance Award, InformationWeek’s Government CIO 50 Award, Billington Cybersecurity Leadership Award, ISACA National Capital Area Conyers Award, ISACA Joseph J. Wasserman Award, Symantec Cyber 7 Award, SC Magazine’s Cyber Security Luminaries Award, (ISC)2 Lynn F. McNulty Tribute Award, and 1105 Media Gov30 Award. He has also been recognized three-times as one of the Top 10 Influencers in Government IT Security.

Selected Publications

Publications

Engineering Trustworthy Secure Systems

Author(s)
Ronald S. Ross, Mark Winstead, Michael McEvilley
This publication describes a basis for establishing principles, concepts, activities, and tasks for engineering trustworthy secure systems. Such principles
Created October 9, 2019, Updated December 8, 2022