Guidelines For Transition from NIST SP 800-171 Revision 2 (r2) to Revision 3 (r3)

Transition from NIST SP 800-171 Revision 2 (r2) to Revision3 (r3) is essential for strengthening the protection of Controlled Unclassified Controlled Unclassified Information (CUI) in non-federal systems and organizations. Here are the key factors driving these changes:

  1. Introduction and Purpose: some text
  2.  
  3. Security Requirement Development Methodology: some: some text
       
    • The methodology for developing security requirements has been refined.
  4.  
  5. Specific Security Requirements: some: some text
       
    • Access Control: some text
         
      • Account management, access enforcement, and information flow enforcement have been addressed.
      •  
      • Separation of duties and least privilege principles are emphasized.
      •  
      • Unsuccessful logon attempts, system use notifications, and session termination are covered.
      •  
      • Remote access guidelines have been updated.
      •  
    •    
    • Other sections, such as wireless access, have also been revised.
  6.  
  7. Additional Resources: some: some text

Remember that compliance with the latest version ensures robust protection of CUI and maintains trust with federal agencies and partners. 

Services