<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Certification Updates Archives - Corsec Security, Inc.®</title>
	<atom:link href="https://sitdev.corsec.com/tag/industry-updates-zh-hans/feed/" rel="self" type="application/rss+xml" />
	<link>https://sitdev.corsec.com/tag/industry-updates-zh-hans/?lang=zh-hans</link>
	<description>Corsec helps companies complete security certifications and validations like FIPS 140-2, Common Criteria, and listing on the DoDIN APL / UC APL.</description>
	<lastBuildDate>Mon, 07 Feb 2022 19:52:46 +0000</lastBuildDate>
	<language>en-GB</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.3</generator>

<image>
	<url>https://sitdev.corsec.com/wp-content/uploads/cropped-Corsec-Logo-SiteMap-32x32.png</url>
	<title>Certification Updates Archives - Corsec Security, Inc.®</title>
	<link>https://sitdev.corsec.com/tag/industry-updates-zh-hans/?lang=zh-hans</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>FED Roundup: July 2021</title>
		<link>https://sitdev.corsec.com/fed-july21/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Sun, 01 Aug 2021 22:01:15 +0000</pubDate>
				<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[DoDIN APL]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[FIPS 140-3]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[UC APL]]></category>
		<category><![CDATA[CAVP]]></category>
		<category><![CDATA[CCRA]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[CMVP]]></category>
		<category><![CDATA[FIPS]]></category>
		<category><![CDATA[FIPS 140]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[NIAP]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<category><![CDATA[STIG]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=18977</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.disa.mil/newsandevents">DISA News</a></strong></h5>
<ul>
<li><a href="https://www.disa.mil/en/NewsandEvents/2021/DISA-sunsets-DCS-for-Non-Class-IPRN-Sept-1">DISA is scheduled to sunset the Defense Collaboration Services for non-classified Internet Protocol Router Network on September 1, 2021</a></li>
</ul>
<h5 style="padding-left: 40px;"><span style="color: #000000;"><a style="color: #000000;" href="https://public.cyber.mil/stigs/">STIG Updates</a></span></h5>
<ul>
<li><a href="https://public.cyber.mil/stigs/downloads">Trend Micro TippingPoint STIG Released</a></li>
<li><a href="https://public.cyber.mil/stigs/compilations/">SRG/STIG Library Compliance Update</a></li>
<li><a href="https://public.cyber.mil/stigs/downloads/?_dl_facet_stigs=app-security">Unclassified Application STIGs Updated</a></li>
<li><a href="https://public.cyber.mil/stigs/downloads/?_dl_facet_stigs=network-perimeter-wireless">Unclassified Network STIGs and SRGs Updated</a></li>
<li><a href="https://public.cyber.mil/stigs/downloads/?_dl_facet_stigs=operating-systems">Unclassified Operating Systems STIGs and Overviews Updated</a></li>
<li>CUI HBSS STIGs Updated</li>
<li><a href="https://public.cyber.mil/stigs/downloads/?_dl_facet_stigs=supplemental-automation-content">Supplemental Automation Content Updated</a></li>
<li><a href="https://public.cyber.mil/stigs/downloads/?_dl_facet_stigs=sunset">Sunset &#8211; Adobe ColdFusion 11 STIG Ver 2, Rel 1</a></li>
<li><a href="https://public.cyber.mil/stigs/downloads/?_dl_facet_stigs=scap">Benchmarks Updated</a></li>
</ul>
</div>
<p><span id="more-18977"></span></p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://csrc.nist.gov/News">NIST News</a></strong></h5>
<h5 style="padding-left: 30px;">Announcements:</h5>
<ul>
<li><a href="https://csrc.nist.gov/News/2021/data-classification-practices-final-pd">NCCoE final Project Description for &#8220;Data Classification Practices: Facilitating Data-Centric Security.&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/automation-of-the-cmvp-final-project-description"><span style="color: #3366ff;">NIST has finalized the Project Description for the &#8220;Automation of the Cryptographic Module Validation Program (CMVP).&#8221;</span></a></li>
</ul>
<h5 style="padding-left: 30px;">Special Publications &amp; Updates:</h5>
<ul>
<li><a href="https://csrc.nist.gov/News/2021/draft-sp-800-53a-rev-5">Draft SP 800-53A Revision 5, &#8220;Assessing Security and Privacy Controls in Information Systems and Organizations,&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/review-of-the-aes-nist-publishes-nistir-8319">NISTIR 8319, &#8220;Review of the Advanced Encryption Standard,&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/nistir-8369-lightweight-crypto-2nd-round-report">NISTIR 8369, &#8220;Status Report on the Second Round of the NIST Lightweight Cryptography Standardization Process.&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/nist-publishes-sp-800-47-rev-1">SP 800-47 Revision 1, &#8220;Managing the Security of Information Exchanges.&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/identifying-estimating-cybersecurity-risk-for-erm">2nd Draft NISTIR 8286A: &#8220;Identifying and Estimating Cybersecurity Risk for Enterprise Risk Management.&#8221;</a></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.niap-ccevs.org/Announcements/Announcements.cfm">NIAP News</a></strong></h5>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Updates:</h5>
<ul>
<li>None</li>
</ul>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Protection Profile Posting:</h5>
<ul>
<li>NIAP is calling for Technical Community (TC) participants to review the VPN Client and VPN Gateway (GW) Protection Profile (PP) Modules</li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div></div></div></div></div><div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper"><div class="vc_row wpb_row vc_inner vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <a href="https://ww3.corsec.com/subscribe"><span style="color: #0000ff;">Subscribe</span></a></p>
</div>

		</div>
	</div>
</div></div></div><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/contact-us/">Press Contact:</a></strong></h5>
<p><strong>Jake Nelson</strong><br />
Dir of Marketing<br />
Jnelson@corsec.com</p>
</div>

		</div>
	</div>
</div></div></div></div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="(max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="(max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="(max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>FED Roundup: June 2021</title>
		<link>https://sitdev.corsec.com/fed-june21/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Fri, 02 Jul 2021 17:52:45 +0000</pubDate>
				<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[DoDIN APL]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[FIPS 140-3]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[CAVP]]></category>
		<category><![CDATA[CCRA]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[CMVP]]></category>
		<category><![CDATA[DISA]]></category>
		<category><![CDATA[NIAP]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=18931</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.disa.mil/newsandevents">DISA News</a></strong></h5>
<ul>
<li>None</li>
</ul>
<h5 style="padding-left: 40px;"><span style="color: #000000;"><a style="color: #000000;" href="https://public.cyber.mil/stigs/">STIG Updates</a></span></h5>
<ul>
<li><a href="https://public.cyber.mil/announcement/stig-update-disa-has-released-a-revised-samsung-sds-emm-stig/">Samsung SDS EMM</a></li>
<li><a href="https://public.cyber.mil/announcement/disa-has-released-the-zebra-android-10-stig/">Zebra Android 10</a></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://csrc.nist.gov/News">NIST News</a></strong></h5>
<h5 style="padding-left: 30px;">Announcements:</h5>
<ul>
<li><span style="color: #3366ff;">None</span></li>
</ul>
<h5 style="padding-left: 30px;">Special Publications &amp; Updates:</h5>
<ul>
<li><a href="https://csrc.nist.gov/News/2021/intro-to-cyber-for-commercial-satellite-operations">Draft NISTIR 8270, &#8220;Introduction to Cybersecurity for Commercial Satellite Operations&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/combinatorial-coverage-difference-measurement-drft">NIST Cybersecurity White Paper, &#8220;Combinatorial Coverage Difference Measurement&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/hardware-enabled-security-containers-nistir-8320a">NISTIR 8320A, &#8220;Hardware-Enabled Security: Container Platform Security Prototype&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/idaas-for-public-safety-draft-nistir-8335">Draft NISTIR 8335, &#8220;Identity as a Service for Public Safety&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/nist-releases-oscal-1-0-0">NIST has released OSCAL 1.0.0</a></li>
<li><a href="https://csrc.nist.gov/News/2021/identity-federation-for-public-safety-draft-nistir">Draft NISTIR 8336, &#8220;Background on Identity Federation Technologies for the Public Safety Community&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/ransomware-risk-management-prelim-draft-nistir">Draft NISTIR 8374, &#8220;Cybersecurity Framework Profile for Ransomware Risk Management&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/draft-federal-vulnerability-disclosure-guidelines">Draft NIST Special Publication (SP) 800-216, &#8220;Recommendations for Federal Vulnerability Disclosure Guidelines&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/migration-to-pqc-draft-project-description">Draft Project Description, &#8220;Migration to Post-Quantum Cryptography&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/authenticating-first-responders-draft-nistir-8334">Draft NISTIR 8334, &#8220;Using Mobile Device Biometrics for Authenticating First Responders&#8221;</a></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.niap-ccevs.org/Announcements/Announcements.cfm">NIAP News</a></strong></h5>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Updates:</h5>
<ul>
<li><a href="https://www.niap-ccevs.org/Documents_and_Guidance/policy.cfm">Policy #5 Frequently Asked Questions &amp; Certificate Reporting Template have been updated</a></li>
</ul>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Protection Profile Posting:</h5>
<ul>
<li><a href="https://www.niap-ccevs.org/Announcements/Announcements.cfm#ann1257">Virtualization Protection Profile, Version 1.1 (VIRTUALIZATION PP)</a></li>
<li><a href="https://www.niap-ccevs.org/Announcements/Announcements.cfm#ann1257https://www.niap-ccevs.org/Announcements/Announcements.cfm#ann1257">PP-Module for Client Virtualization, Version 1.1 (CV PP-Module)</a></li>
<li><a href="https://www.niap-ccevs.org/Announcements/Announcements.cfm#ann1257">PP-Module for Server Virtualization, Version 1.1 (SV PP-Module)</a></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div></div></div></div></div><div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper"><div class="vc_row wpb_row vc_inner vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <a href="https://ww3.corsec.com/subscribe"><span style="color: #0000ff;">Subscribe</span></a></p>
</div>

		</div>
	</div>
</div></div></div><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/contact-us/">Press Contact:</a></strong></h5>
<p><strong>Jake Nelson</strong><br />
Dir of Marketing<br />
Jnelson@corsec.com</p>
</div>

		</div>
	</div>
</div></div></div></div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Further Automation Within The CMVP</title>
		<link>https://sitdev.corsec.com/cmvp-automation/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Thu, 29 Apr 2021 15:03:39 +0000</pubDate>
				<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[FIPS 140-3]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[CAVP]]></category>
		<category><![CDATA[Certification Process]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[CMVP]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[FIPS]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=18854</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p>The Cryptographic Module Validation Program (CMVP) is a part of the National Institute of Standards and Technology (NIST) which operates under the Department of Commerce.  The CMVP&#8217;s role is to promote the use of validated cryptographic modules and provide Federal agencies with a security metric to use in procuring equipment containing validated cryptographic modules, this primarily occurs through management and oversight of the testing required as part of the <a href="https://sitdev.corsec.com/fips-140-2/"><span style="color: #339966;">FIPS 140-2</span></a> / <a href="https://sitdev.corsec.com/fips-140-3/"><span style="color: #339966;">FIPS 140-3</span></a> validation standards.</p>
<p>The CMVP is currently experiencing longer than usual evaluation periods within the <a href="https://sitdev.corsec.com/fips-140-3/"><span style="color: #339966;">FIPS 140</span></a> programs. To rectify and hopefully assist in shortening those wait times, the CMVP is looking to automate processes and procedures related to the evaluation and testing of these cryptographic modules.</p>
<p>To support this newly identified objective, the CMVP has developed a <span style="color: #3366ff;"><a style="color: #3366ff;" href="https://www.nccoe.nist.gov/sites/default/files/library/project-descriptions/cmvp-project-description-draft.pdf">draft document</a></span> which outlines assumptions, challenges, current architectures, requirements, and guidance.  The ultimate goal is to identify ideas and recommendations on how to automate some of the more tedious and manual elements of the <a href="https://sitdev.corsec.com/fips-140-3/"><span style="color: #339966;">FIPS 140</span></a> evaluation process.  Specifically stating they hope to improve efficiencies and timelines within CMVP operations.</p>
<p>Some of the current challenges outlined include:</p>
<ul>
<li>An increase in complex modules being evaluated</li>
<li>A lack of human resources to address the influx in evaluations</li>
<li>Insufficient information/documentation submissions</li>
<li>Operating Environment Updates</li>
</ul>
<p>This is not the first time the CMVP has turned to automation, as they recently implemented a change to the methods for testing algorithms within the Cryptographic Algorithm Validation Program (CAVP). Read more about that transition <span style="color: #3366ff;"><a style="color: #3366ff;" href="https://sitdev.corsec.com/algorithm-automation/">here</a></span>.</p>
<p>Although the effects of such an effort are not expected to make an impact in the near term, it is a positive sign that the CMVP is actively trying to improve things in the long run.</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5><span style="color: #000000;"><strong>Need Support?</strong></span></h5>
<p><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://sitdev.corsec.com/contact-us/">Contact Corsec</a></span> to ask questions, discuss a project, or gain more insight on this post.</p>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p style="text-align: center;">###</p>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div></div></div></div></div><div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper"><div class="vc_row wpb_row vc_inner vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <a href="https://ww3.corsec.com/subscribe"><span style="color: #0000ff;">Subscribe</span></a></p>

		</div>
	</div>
</div></div></div><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;">Press Contact:</strong></h5>
<p><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://www.linkedin.com/in/jake-r-nelson/">Jake Nelson</a></span><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>

		</div>
	</div>
</div></div></div></div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>FED Roundup: January 2021</title>
		<link>https://sitdev.corsec.com/fed-jan21/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Mon, 01 Feb 2021 17:57:11 +0000</pubDate>
				<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[DoDIN APL]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[FIPS 140-3]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[CAVP]]></category>
		<category><![CDATA[CCRA]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[DISA]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[NIAP]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<category><![CDATA[STIG]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=18801</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.disa.mil/newsandevents">DISA News</a></strong></h5>
<ul>
<li><a href="https://www.disa.mil/NewsandEvents/2020/Continuous-improv-reqs-continuous-planning"><span style="color: #3366ff;">DISA continues to work towards implementation of the DISA Strategic Plan FY 2019-2022 Version 2, released in December of 2020.</span></a></li>
<li><a href="https://www.disa.mil/-/media/Open-Letter-to-DISA-Contractors-SPRS.ashx?la=en&amp;hash=95CFB9AFAC947EFEC8B87872FACD1E16D9E0431B"><span style="color: #3366ff;">Assessment Requirements for IT services will now be placed in DISA contracts as outlined by a new directive from the Head of DISA contracting activity, Douglas W. Packard</span></a></li>
</ul>
<h5 style="padding-left: 40px;"><span style="color: #000000;"><a style="color: #000000;" href="https://public.cyber.mil/stigs/">STIG Updates</a></span></h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/disa-has-released-the-sles-15-security-technical-implementation-guide-stig/">DISA has released the SLES 15 Security Technical Implementation Guide (STIG) for review</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/disa-has-released-the-honeywell-android-9-x-security-technical-implementation-guide-stig/">DISA has released the Honeywell Android 9.X Security Technical Implementation Guide (STIG) for review</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/disa-has-released-updates-to-the-srg-stig-library-compilations-5/">DISA has updated the SRG/STIG Library Compilations</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/group-policy-objects-gpos-have-been-updated-for-january-2021/">Group Policy Objects (GPO) have been updated</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/stig-update-january-2021-quarterly-release/">2021 Q1 Quarterly Release of STIGs</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/request-for-comments-disa-has-released-the-draft-cisco-asa-stig-for-review/">DISA has released the Draft Cisco ASA Security Technical Implementation Guide (STIG) for review</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/request-for-comments-disa-has-released-the-draft-rhel-8-stig-scap-benchmark-for-review/">DISA has released the Draft Red Hat Enterprise Linux (RHEL) 8 Security Technical Implementation Guide (STIG) SCAP Benchmark for review</a></span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://csrc.nist.gov/News">NIST News</a></strong></h5>
<h5 style="padding-left: 30px;">Announcements:</h5>
<ul>
<li><span style="color: #3366ff;">(None)</span></li>
</ul>
<h5 style="padding-left: 30px;">Special Publications &amp; Updates:</h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-204b/draft">Draft NIST Special Publication (SP) 800-204B, <em>Attribute-based Access Control for Microservices-based Applications using a Service Mesh</em></a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2021/control-catalog-and-baselines-as-spreadsheets">New documents and information has been posted for the NIST Special Publication (SP) 800-53, Revision 5, <em>Security and Privacy Controls for Information Systems and Organizations</em>, and NIST SP 800-53B, <em>Control Baselines for Information Systems and</em></a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-47/rev-1/draft">NIST Draft Special Publication (SP) 800-47 Revision 1, <em>Managing the Security of Information Exchanges</em></a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/nistir/8322/final">NISTIR 832 for the Cybersecurity for Internet of Things program</a></span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.niap-ccevs.org/Announcements/Announcements.cfm">NIAP News</a></strong></h5>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Updates:</h5>
<ul>
<li><span style="color: #3366ff;">(None)</span></li>
</ul>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Protection Profile Posting:</h5>
<ul>
<li><a href="https://www.niap-ccevs.org/Announcements/Announcements.cfm#ann1248"><span style="color: #3366ff;">PP-Module for VPN Clients (VPN), Version 2.2</span></a></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <a href="https://ww3.corsec.com/subscribe"><span style="color: #0000ff;">Subscribe</span></a></p>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_text_column wpb_content_element "><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Press Contact:</a></strong></h5>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p><strong>Jake Nelson</strong><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>FED Roundup: November 2020</title>
		<link>https://sitdev.corsec.com/fed-nov20/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Wed, 02 Dec 2020 20:08:28 +0000</pubDate>
				<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[DoDIN APL]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[FIPS 140-3]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[CMVP]]></category>
		<category><![CDATA[DISA]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[NIAP]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=18765</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.disa.mil/newsandevents">DISA News</a></strong></h5>
<ul>
<li><a href="https://www.disa.mil/NewsandEvents/2020/Global-Video-Services-unclassified-voice"><span style="color: #3366ff;">DISA&#8217;s Global Video Services – Unclassified expands to include voice dial-in capability</span></a></li>
</ul>
<h5 style="padding-left: 40px;"><span style="color: #000000;"><a style="color: #000000;" href="https://public.cyber.mil/stigs/">STIG Updates</a></span></h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/stig-update-disa-has-released-the-juniper-srx-for-anisble-automation-package/">DISA has released the Juniper SRX for Anisble Automation Package</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/stig-update-disa-has-released-the-canonical-ubuntu-18-04-stig-benchmark/">DISA has released the Canonical Ubuntu 18.04 STIG</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/disa-has-released-the-motorola-android-9-x-stig/">DISA has released the Motorola Android 9.x STIG</a></span></li>
<li><a href="https://public.cyber.mil/announcement/supplemental-automation-content-has-been-updated-for-october-2020/"><span style="color: #3366ff;">The following supplemental content has been updated:</span></a>
<ul>
<li>Ansible Content:<br />
Cisco IOS XE Router STIG for Ansible – Ver 2, Rel 1<br />
Red Hat Enterprise Linux 7 STIG for Ansible – Ver 3, Rel 1</li>
<li>Chef Content:<br />
Red Hat Enterprise Linux 7 STIG for Chef – Ver 3, Rel 1</li>
</ul>
</li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://csrc.nist.gov/News">NIST News</a></strong></h5>
<h5 style="padding-left: 30px;">Announcements:</h5>
<ul>
<li><a href="https://csrc.nist.gov/News/2020/updated-workforce-framework-for-cybersecurity"><span style="color: #3366ff;">The National Initiative for Cybersecurity Education (NICE) released the first revision to the Workforce Framework for Cybersecurity (NICE Framework)</span></a></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2020/draft-fips-201-3-and-workshop">Draft Federal Information Processing Standard (FIPS) 201-3</a>, <em><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/fips/201/3/draft" data-csrc-pub-link="true" data-pub-guid="b8f49697-de25-410f-b4a0-784a6e861164">Personal Identity Verification (PIV) of Federal Employees and Contractors</a></em></span></li>
</ul>
<h5 style="padding-left: 30px;">Special Publications &amp; Updates:</h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2020/nistirs-8278-and-8278a-published">NISTIR 8278, <em>National Online Informative References (OLIR) Program: Program Overview and OLIR Uses</em></a></span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.niap-ccevs.org/Announcements/Announcements.cfm">NIAP News</a></strong></h5>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Updates:</h5>
<ul>
<li><span style="color: #3366ff;">(None)</span></li>
</ul>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Protection Profile Posting:</h5>
<ul>
<li><span style="color: #3366ff;">(None)</span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <span style="color: #0000ff;"><a style="color: #0000ff;" href="https://ww3.corsec.com/subscribe">Subscribe</a></span></p>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_text_column wpb_content_element "><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Press Contact:</a></strong></h5>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p><strong>Jake Nelson</strong><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Algorithm Transition Dates</title>
		<link>https://sitdev.corsec.com/algorithm-transition/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Sun, 30 Aug 2020 19:03:55 +0000</pubDate>
				<category><![CDATA[Algorithm Testing]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[FIPS 140-3]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/algorithm-transition/</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p>Recent Implementation Guidance (IG) from NIST could impact vendor algorithms. The following overview has been created to summarize those critical dates and associated algorithms.</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><strong><u><span style="font-style: inherit !important;">AES CBC-CS1, CBC-CS2, CBC-CS3 (IG A.12)</span></u></strong></p>
<ul>
<li>Until <strong>Sep. 1, 2020</strong>, implementations that claim vendor affirmation to <em>NIST SP 800-38A Addendum A</em> will be accepted for submission.</li>
<li>After <strong>Sep. 1, 2020</strong>, only implementations that are CAVP-tested for compliance to<em>NIST SP 800-38A Addendum A</em> will be accepted for submission.</li>
</ul>
<p><strong><u>SHAKE and KECCAK-based hash algorithms (IG A.15)</u></strong></p>
<ul>
<li>Until <strong>Sep. 1, 2020</strong>, implementations that claim vendor affirmation to <em>NIST SP 800-185</em> will be accepted for submission.</li>
<li>After <strong>Sep. 1, 2020</strong>, only implementations that are CAVP-tested for compliance to<em>NIST SP 800-185</em> will be accepted for submission.</li>
</ul>
<p><strong><u>PBKDF (IG D.6)</u></strong></p>
<ul>
<li>Until <strong>Dec. 31, 2020</strong>, implementations that claim vendor affirmation to <em>NIST SP 800-132</em> will be accepted for submission.</li>
<li>After <strong>Dec. 31, 2020</strong>, only implementations that are CAVP-tested for compliance to <em>NIST SP 800-132</em> will be accepted for submission.</li>
</ul>
<p><strong><u>Key agreement schemes (IG G.20, IG D.1-rev2, IG D.1-rev3, and IG D.8)</u></strong></p>
<ul>
<li>New submissions (3SUB, 5SUB) with previous <em>NIST SP 800-56A</em>-based acceptance scenarios will no longer be accepted after <strong>Dec. 31, 2020</strong>. These scenarios include, for example, allowances for leveraging a shared secret CVL and a KDF CVL to claim a compliant KAS.</li>
<li>Implementations under the previous <em>NIST SP 800-56A</em>-based acceptance scenarios will no longer be acceptable for use in FIPS mode after <strong>Dec. 31, 2021</strong>.
<ul>
<li>CVL certificates used to claim compliance for key agreement schemes will become obsolete after <strong>Dec. 21, 2021</strong>.</li>
<li>New submissions with these CVL certificates will not be accepted after <strong>Dec. 21, 2021</strong>.</li>
<li>Modules with claims of compliance to <em>NIST SP 800-56A</em> or <em>NIST SP 800-56Arev2</em> will be moved to the Historical List effective <strong>Jan 1, 2022</strong>.</li>
</ul>
</li>
</ul>
<ul>
<li>Until <strong>Dec. 31, 2020</strong>, implementations that claim vendor affirmation to <em>NIST SP 800-56Arev3</em> will be accepted for submission.</li>
<li>After <strong>Dec. 31, 2020</strong>, only implementations that are CAVP-tested for compliance to<em>NIST SP 800-56Arev3 </em>will be accepted for submission.</li>
</ul>
<p><strong><u>Key transport schemes (IG D.9)</u></strong></p>
<ul>
<li>RSA-based implementations that claim compliance to <em>NIST SP 800-56Brev3</em> will require CAVP testing after <strong>Dec. 31, 2020</strong>.</li>
<li>New submissions (3SUB, 5SUB) with RSA-based implementations that are vendor-affirmed to <em>NIST SP 800-56B</em> will no longer be accepted after <strong>Dec. 31, 2020</strong>.</li>
<li>RSA-based implementations that are vendor-affirmed to <em>NIST SP 800-56B</em> will be disallowed after <strong>Dec. 31, 2023</strong>.</li>
<li>Non-compliant implementations of RSA key wrap will be allowed until <strong>Dec. 31, 2023</strong>.</li>
<li>New submissions (3SUB, 5SUB) with non-compliant implementations of RSA key wrap will no longer be accepted after <strong>Dec. 21, 2020</strong>.</li>
</ul>
<p><strong><u>Key derivations schemes (IG D.10)</u></strong></p>
<ul>
<li>Vendors may continue to claim vendor affirmation to <em>NIST SP 800-56Crev1</em> thru <strong>Dec. 31, 2020</strong>.</li>
<li>Implementations that claim compliance to <em>NIST SP 800-56Crev1</em> will require CAVP testing after <strong>Dec. 31, 2020</strong>.</li>
</ul>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><strong>Need Support?</strong></p>
<p><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://sitdev.corsec.com/contact-us/">Contact Corsec</a></span> to discuss your resolution path and determine if you need to take action for your validation.</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div></div></div></div></div><div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper"><div class="vc_row wpb_row vc_inner vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <a href="https://ww3.corsec.com/preferences?epc_hash=RQWDMIqgM4KnesYu0jw6IjO8LZywa9JCA9yip6i2fvw"><span style="color: #0000ff;">Subscribe</span></a></p>
</div>

		</div>
	</div>
</div></div></div><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner vc_custom_1586536412535"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;">Press Contact:</strong></h5>
<p><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://www.linkedin.com/in/jake-r-nelson/">Jake Nelson</a></span><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>
</div>

		</div>
	</div>
</div></div></div></div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://ww3.corsec.com/linkedin"><img loading="lazy" decoding="async" class="alignnone" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" /></a>     <img loading="lazy" decoding="async" class="alignnone" title="https://ww3.corsec.com/twitter" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />    <a href="https://ww3.corsec.com/facebook"><img loading="lazy" decoding="async" class="alignnone" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>FED ROUNDUP: JULY 2019</title>
		<link>https://sitdev.corsec.com/fed-july19/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Wed, 31 Jul 2019 18:07:31 +0000</pubDate>
				<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[DoDIN APL]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[UC APL]]></category>
		<category><![CDATA[Certification Process]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[DISA]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[NIAP]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/fed-july19/</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.disa.mil/newsandevents">DISA News</a></strong></h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://www.disa.mil/NewsandEvents/2019/DISA-awards-SETI">DISA Awards SETI IDIQ to 23 Small Businesses</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://www.disa.mil/NewsandEvents/2019/DISA-new-strategic-plan">DISA Releases 4 Year Strategic Plan</a></span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://csrc.nist.gov/News">NIST News</a></strong></h5>
<h5 style="padding-left: 30px;">Announcements:</h5>
<ul>
<li><span style="color: #3366ff;">None</span></li>
</ul>
<h5 style="padding-left: 30px;">Releases &amp; Special Publications:</h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/1800-17/final">SP 1800-17, Multifactor Authentication for E-Commerce: Risk-Based, FIDO Universal Second Factor Implementations for Purchasers</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/nist-publishes-sp-800-133-revision-1" data-csrc-pub-link="true" data-pub-guid="ef6e6155-b91a-4790-9dc8-ad5e44d1c3ce">SP 800-133 Revision 1, Recommendation for Cryptographic Key Generation</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/NIST-Releases-Draft-SP-1800-21-for-Comment">Draft SP 1800-21, Mobile Device Security: Corporate-Owned Personally-Enabled (COPE)</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/NCCoE-Releases-Draft-SP-1800-16-for-Comment" data-csrc-pub-link="true" data-pub-guid="dcda17a4-1b55-471c-9aea-dc6d1177187e">Draft SP 1800-16, <em>Securing Web Transactions: Transport Layer Security (TLS) Server Certificate Management</em></a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/draft-white-paper-emerging-blockchain-idms">Draft Cybersecurity White Paper, </a><em><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/white-paper/2019/07/09/a-taxonomic-approach-to-understanding-emerging-blockchain-idms/draft">A Taxonomic Approach to Understanding Emerging Blockchain Identity Management Systems (IDMS)</a></em></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/nist-releases-draft-sp-800-175B-rev-1-for-comment" data-csrc-pub-link="true" data-pub-guid="c793169f-7918-4ba8-9545-70d826cf0068">Draft SP 800-175B Revision 1, <em>Guideline for Using Cryptographic Standards in the Federal Government: Cryptographic Mechanisms</em></a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/NIST-Releases-Draft-SP-800-77-Rev-1-for-Comment" data-csrc-pub-link="true" data-pub-guid="fc004568-b730-473b-9d71-69d672e34095">SP 800-77 Revision 1, <em>Guide to IPsec VPNs</em></a></span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.niap-ccevs.org/Announcements/Announcements.cfm">NIAP News</a></strong></h5>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Updates:</h5>
<ul>
<li><span style="color: #3366ff;">None</span></li>
</ul>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Protection Profile Posting:</h5>
<ul>
<li>Peripheral Sharing Device (PSD) Protection Profile (PP), Version 4.0 and its five associated PP-Modules:<br />
1.) PP-Module for Audio Input Devices, Version 1.0<br />
2.) PP-Module for Analog Audio Output Devices, Version 1.0<br />
3.) PP-Module for Keyboard/Mouse Devices, Version 1.0<br />
4.) PP-Module for User Authentication Devices, Version 1.0<br />
5.) PP-Module for Video/Display Devices, Version 1.0</li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <span style="color: #0000ff;"><a style="color: #0000ff;" href="http://marketing.corsec.com/Subscribe-Email.html">Subscribe</a></span></p>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_text_column wpb_content_element "><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Press Contact:</a></strong></h5>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p><strong>Jake Nelson</strong><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>FED ROUNDUP: JUNE 2019</title>
		<link>https://sitdev.corsec.com/fed-june19/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Fri, 28 Jun 2019 13:11:36 +0000</pubDate>
				<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[DoDIN APL]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[UC APL]]></category>
		<category><![CDATA[Certification Process]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[DISA]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[NIAP]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=17919</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.disa.mil/newsandevents">DISA’s June News</a></strong></h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://www.disa.mil/NewsandEvents/2019/reduces-DITCO-contracting-fee">DITCO, DISA&#8217;s contracting arm, reduces its enterprise acquisition services fee</a></span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://csrc.nist.gov/News">NIST’s June News</a></strong></h5>
<h5 style="padding-left: 30px;">Announcements:</h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/Open-Security-Controls-Assessment-Language-Milesto">NIST announces Open Security Controls Assessment Language (OSCAL), Version 1.0.0 &#8211; Milestone 1 has been released</a></span></li>
</ul>
<h5 style="padding-left: 30px;">Releases &amp; Special Publications:</h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/nist-publishes-nistir-8228">NIST Interagency/Internal Report 8228, &#8220;Considerations for Managing Internet of Things (IoT) Cybersecurity and Privacy Risks.&#8221;</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/NCCoE-Releases-Data-Confidentiality-Draft-Project">NCCoE has posted two draft data confidentiality project descriptions</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/draft-sp-800-171-rev-2-and-sp-800-171b">Draft SP 800-171 Rev. 2 and SP 800-171B</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/nist-publishes-sp-800-205">SP 800-205, &#8220;Attribute Considerations for Access Control Systems.&#8221;</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/NCCoE-Draft-Project-Descriptions-for-SMBs-and-Manu">NCCoE drafts two Project Descriptions for SMBs and Manufactures</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/draft-white-paper-on-ssdf">Draft White Paper &#8220;Mitigating the Risk of Software Vulnerabilities by Adopting a Secure Software Development Framework (SSDF)&#8221;</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/nist-publishes-nistir-8221">NISTIR 8221, &#8220;A Methodology for Enabling Forensic Analysis Using Hypervisor Vulnerabilities Data.&#8221;</a></span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.niap-ccevs.org/Announcements/Announcements.cfm">NIAP’s June News</a></strong></h5>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Updates:</h5>
<ul>
<li><span style="color: #3366ff;">None</span></li>
</ul>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Protection Profile Posting:</h5>
<ul>
<li><span style="color: #3366ff;">None</span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <span style="color: #0000ff;"><a style="color: #0000ff;" href="http://marketing.corsec.com/Subscribe-Email.html">Subscribe</a></span></p>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_text_column wpb_content_element "><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Press Contact:</a></strong></h5>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p><strong>Jake Nelson</strong><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>FIPS 140-3 APPROVED</title>
		<link>https://sitdev.corsec.com/fips-140-3-approved/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Wed, 01 May 2019 15:52:00 +0000</pubDate>
				<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Certification Process]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[federal regulation]]></category>
		<category><![CDATA[FIPS 140-3]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/fips-140-3-approved/</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p>A <a id="" href="https://www.federalregister.gov/documents/2019/05/01/2019-08817/announcing-issuance-of-federal-information-processing-standard-fips-140-3-security-requirements-for" target="_blank" rel="noopener noreferrer">Federal Register Notice</a> has been issued for the &#8220;Federal Information Processing Standard (<span style="color: #008000;"><a id="" style="color: #008000;" title="FIPS 140" href="https://csrc.nist.gov/publications/detail/fips/140/3/final" target="_blank" rel="noopener noreferrer">FIPS</a></span>) 140-3, Security Requirements for Cryptographic Modules&#8221;.</p>
<p>Having now been signed by the U.S. Commerce Secretary, it is official, FIPS 140-3 has been approved!</p>
<p style="padding-left: 40px;"><em>&#8220;This notice announces the Secretary of Commerce&#8217;s issuance of Federal Information Processing Standard (FIPS) 140-3, Security Requirements for Cryptographic Modules. <span style="color: #008000;">FIPS 140-3</span> includes references to two existing international standards: International Organization for Standardization/International Electrotechnical Commission (ISO/IEC) 19790:2012(E) Information technology — Security techniques — Security requirements for cryptographic modules, and ISO/IEC 24759:2017(E) Information technology — Security techniques — Test requirements for cryptographic modules. As permitted by those standards, NIST Special Publication (SP) series 800-140 will specify updates, replacements, or additions to the currently-cited ISO/IEC standard, as necessary. Those new SP 800-140 documents (currently under development) will consolidate implementation guidance and administrative guidance, and will be made available for public review and comment.&#8221;</em></p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><strong>Key Dates:</strong></p>
<p>Companies actively working on or planning a FIPS validation will inevitably face decisions around which standard to work towards. The following dates will be critical for those projects:</p>
<ul>
<li><span style="color: #339966;">Draft For Comments: Complete</span></li>
<li><span style="color: #339966;">Effective Date: Complete</span></li>
<li><span style="color: #339966;">Publication of the Standard: Complete</span></li>
<li><span style="color: #339966;">Supporting Documents for FIPS 140-2 &amp; the CMVP Released: Complete</span></li>
<li>New Testing Begins: 9/22/20</li>
<li>140-3 Mandated &amp; The Last Day for 140-2 Submissions: 9/22/21 (This means Labs must submit their Lab reports to CMVP by this date)</li>
</ul>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><b>Documentation:</b></p>
<p>CMVP wants to minimize the content in the series of NIST SP 800-140 documents because they hope to be as close to the international standard as possible. These are the documents that we believe will replace the existing FIPS 140-2 DTR, Appendices, and Annexes:</p>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-140/final">NIST SP 800-140</a></span> – <em>FIPS 140-3 Derived Test Requirements</em></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-140a/final">NIST SP 800-140A</a></span> – <em>CMVP Documentation Requirements</em></li>
<li><a href="https://csrc.nist.gov/publications/detail/sp/800-140b/final"><span style="color: #3366ff;">NIST SP 800-140B</span></a> – <em>CMVP Security Policy Requirements</em></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-140c/final">NIST SP 800-140C</a> </span>– <em>CMVP Approved Security Functions</em></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-140d/final">NIST SP 800-140D</a> </span>– <em>CMVP Approved Sensitive Security Parameter Generation and Establishment Methods</em></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-140e/final">NIST SP 800-140E</a></span> – <em>CMVP Approved Authentication Mechanisms</em></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-140f/final">NIST SP 800-140F</a></span> – <em>CMVP Approved Non-Invasive Attack Mitigation Test Metrics</em></li>
</ul>
<p>A notable omission from the new SP 800-140 series is any reference document for Approved Protection Profiles from Common Criteria (a CC-certified operating system was required for software validations at level 2 and above).</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><b>Early Review and Analysis:</b></p>
<p>This release has been a long time coming. We still expect additional updates and changes to come, but Corsec has reviewed the public documents and found the following areas to be of interest:</p>
<ul>
<li>Rather than encompassing the module requirements directly, FIPS 140-3 references ISO/IEC 19790:2012. The testing for these requirements will be in accordance with ISO/IEC 24759:2017</li>
<li>This version of FIPS 140-3 retains the 4 levels of validation</li>
<li>The sections in FIPS 140-3 are now as follows:
<ol>
<li>Cryptographic Module Specification</li>
<li>Cryptographic Module Interfaces</li>
<li>Roles, Services, And Authentication</li>
<li>Software/Firmware Security</li>
<li>Operating Environment</li>
<li>Physical Security</li>
<li>Non-Invasive Security</li>
<li>Sensitive Security Parameter Management*</li>
<li>Self-Tests</li>
<li>Life-Cycle Assurance</li>
<li>Mitigation of Other Attacks</li>
</ol>
</li>
</ul>
<p style="padding-left: 80px;"><strong>*</strong>Sensitive Security Parameters is a new category &#8211; SSPs include both CSPs and PSPs (Public Security Parameters)</p>
<p style="padding-left: 80px;"><strong>**</strong>Finite State Model was removed but may have been absorbed into section 11</p>
<p style="padding-left: 80px;"><strong>***</strong>EMI/EMC was removed. There was no mention of EMI/EMC in the draft ISO 24759 either</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><strong>Moving Forward:</strong></p>
<ol>
<li>Get Ahead: Be the first to complete the new standard (<span style="color: #008000;"><a style="color: #008000;" href="https://csrc.nist.gov/publications/detail/fips/140/3/final">FIPS 140-3</a></span>)</li>
<li>Revalidate Early: Avoid the new requirements prior to the mandated transition date and add 5 years to your current <span style="color: #008000;"><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a></span> validation</li>
<li>Plan Accordingly &#8211; Products being evaluated against FIPS 140-2 during testing transition may face problems completing their certification under old requirements.</li>
</ol>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p>Corsec participates in numerous committees, technical working groups, certification leadership positions, and industry events. As more information develops, we will deliver updates. Stay informed on all the program details, requirements, and timelines associated with FIPS 140-3 – <a href="https://ww3.corsec.com/subscribe">Subscribe</a></p>
<p>For more information on the current <span style="color: #008000;"><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a></span> program, requirements, and process &#8211; <a href="https://sitdev.corsec.com/fips-140-2/">visit here</a>.</p>
<p>For any questions on how this will affect current or future FIPS projects, <a href="https://sitdev.corsec.com/contact-us/">contact Corsec</a>!</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p style="text-align: center;">###</p>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_grey" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_text_column wpb_content_element "><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Press Contact:</a></strong></h5>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p><strong>Jake Nelson</strong><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></h5>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/?utm_source=w3tc&utm_medium=footer_comment&utm_campaign=free_plugin

Content Delivery Network via cdn.corsec.com

Served from: sitdev.corsec.com @ 2026-05-30 22:27:09 by W3 Total Cache
-->