All frameworks
nist-80053-rev5version Rev. 5

NIST SP 800-53 Rev. 5

Official source

1,196 controls.

ReferenceFamilyTitle
SC-13(1)System and Communications ProtectionFIPS-validated Cryptography
SC-13(2)System and Communications ProtectionNSA-approved Cryptography
SC-13(3)System and Communications ProtectionIndividuals Without Formal Access Approvals
SC-13(4)System and Communications ProtectionDigital Signatures
SC-14System and Communications ProtectionPublic Access Protections
SC-15System and Communications ProtectionCollaborative Computing Devices and Applications
SC-15(1)System and Communications ProtectionPhysical or Logical Disconnect
SC-15(2)System and Communications ProtectionBlocking Inbound and Outbound Communications Traffic
SC-15(3)System and Communications ProtectionDisabling and Removal in Secure Work Areas
SC-15(4)System and Communications ProtectionExplicitly Indicate Current Participants
SC-16System and Communications ProtectionTransmission of Security and Privacy Attributes
SC-16(1)System and Communications ProtectionIntegrity Verification
SC-16(2)System and Communications ProtectionAnti-spoofing Mechanisms
SC-16(3)System and Communications ProtectionCryptographic Binding
SC-17System and Communications ProtectionPublic Key Infrastructure Certificates
SC-18System and Communications ProtectionMobile Code
SC-18(1)System and Communications ProtectionIdentify Unacceptable Code and Take Corrective Actions
SC-18(2)System and Communications ProtectionAcquisition, Development, and Use
SC-18(3)System and Communications ProtectionPrevent Downloading and Execution
SC-18(4)System and Communications ProtectionPrevent Automatic Execution
SC-18(5)System and Communications ProtectionAllow Execution Only in Confined Environments
SC-19System and Communications ProtectionVoice Over Internet Protocol
SC-2System and Communications ProtectionSeparation of System and User Functionality
SC-2(1)System and Communications ProtectionInterfaces for Non-privileged Users
SC-2(2)System and Communications ProtectionDisassociability
SC-20System and Communications ProtectionSecure Name/Address Resolution Service (Authoritative Source)
SC-20(1)System and Communications ProtectionChild Subspaces
SC-20(2)System and Communications ProtectionData Origin and Integrity
SC-21System and Communications ProtectionSecure Name/Address Resolution Service (Recursive or Caching Resolver)
SC-21(1)System and Communications ProtectionData Origin and Integrity
SC-22System and Communications ProtectionArchitecture and Provisioning for Name/Address Resolution Service
SC-23System and Communications ProtectionSession Authenticity
SC-23(1)System and Communications ProtectionInvalidate Session Identifiers at Logout
SC-23(2)System and Communications ProtectionUser-initiated Logouts and Message Displays
SC-23(3)System and Communications ProtectionUnique System-generated Session Identifiers
SC-23(4)System and Communications ProtectionUnique Session Identifiers with Randomization
SC-23(5)System and Communications ProtectionAllowed Certificate Authorities
SC-24System and Communications ProtectionFail in Known State
SC-25System and Communications ProtectionThin Nodes
SC-26System and Communications ProtectionDecoys
SC-26(1)System and Communications ProtectionDetection of Malicious Code
SC-27System and Communications ProtectionPlatform-independent Applications
SC-28System and Communications ProtectionProtection of Information at Rest
SC-28(1)System and Communications ProtectionCryptographic Protection
SC-28(2)System and Communications ProtectionOffline Storage
SC-28(3)System and Communications ProtectionCryptographic Keys
SC-29System and Communications ProtectionHeterogeneity
SC-29(1)System and Communications ProtectionVirtualization Techniques
SC-3System and Communications ProtectionSecurity Function Isolation
SC-3(1)System and Communications ProtectionHardware Separation

Built 2026-07-25 from 216 techniques, 334 regulation articles, 125 ENISA controls, 2,610 framework controls, and 90 countermeasures.