What is the Special Publication 800-70?
NIST, with sponsorship from the Department of Homeland Security (DHS), has produced Special Publication 800-70: Security Configuration Checklists Program for IT Products – Guidance for Checklist Users and Developers to facilitate the development and dissemination of security configuration checklists so that organizations and individual users can better secure their IT products.This publication is intended for users and developers of IT product security configuration checklists. For checklist users, this document gives an overview of the NIST Checklist Program, explains how to retrieve checklists from NIST’s repository, and provides general information about threat models and baseline technical security policies for associated operational environments. For checklist developers, the document sets forth the policies, procedures, and general requirements for participation in the NIST Checklist Program.4. What is the motivation behind the NIST program? Many organizations have created variou