How do I know if a Tool is Security Content Automation Protocol (SCAP)-validated?
Tools that have achieved NIST SCAP-validated with FDCC Scanner Capability status will be listed at http://nvd.nist.gov/scapproducts.cfm. Tools are referenced by their type (configuration scanner, vulnerability scanner, etc…), as well as by the vendor, tool name, and specific SCAP components in which the tool has achieved compliance.
Related Questions
- How can agencies use Security Content Automation Protocol (SCAP) USGCB content to automate FISMA compliance of technical controls?
- Is NIST working exclusively with Microsoft on Security Content Automation Protocol (SCAP)?
- How do I know if a Tool is Security Content Automation Protocol (SCAP)-validated?