FIPS 199

E1008664

FIPS 199 is a U.S. federal standard that defines security categorization levels (low, moderate, high) for information and information systems based on the potential impact of security breaches.

All labels observed (3)

How this entity was disambiguated

Statements (46)

Predicate Object
instanceOf NIST Federal Information Processing Standard
U.S. federal information security standard
appliesTo all federal information systems except national security systems
audience federal information system owners
information security officers
risk managers
basisFor security categorization of information
security categorization of information systems
classificationModel low-moderate-high impact model
country United States
defines high impact level
low impact level
moderate impact level
security categorization standards
security impact levels
documentType technical standard
foundationFor federal security control selection
fullName Federal Information Processing Standards Publication 199
impactAssessmentCriterion potential impact on individuals
potential impact on organizational assets
potential impact on organizational operations
potential impact on other organizations
potential impact on the Nation
impactDimension availability
confidentiality
integrity
issuedBy National Institute of Standards and Technology
U.S. Department of Commerce
language English
publisher NIST Computer Security Division
regulatoryContext Federal Information Security Modernization Act
relatedTo FIPS 200
NIST Special Publication 800-53
linked to: NIST SP 800-53
scope federal information
federal information systems
securityObjective protect availability
protect confidentiality
protect integrity
status active
supports risk management for federal information systems
title Standards for Security Categorization of Federal Information and Information Systems
linked to: FIPS 199
usedBy U.S. federal agencies
usedFor classifying information systems
determining security control baselines
usedIn federal information security programs
system authorization processes

How these facts were elicited

Referenced by (7)

Full triples — surface form annotated when it differs from this entity's canonical label.

FedRAMP Moderate basedOn FIPS 199 security categorization
linked to: FIPS 199
FIPS 200 relatedTo FIPS 199
NIST SP 800-30 relatedTo FIPS 199
NIST SP 800-60 relatedTo FIPS 199
FIPS 199 title Standards for Security Categorization of Federal Information and Information Systems
linked to: FIPS 199
FedRAMP Low basedOnStandard FIPS 199