<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>security Archives - Corsec Security, Inc.®</title>
	<atom:link href="https://sitdev.corsec.com/tag/security-zh-hans/feed/" rel="self" type="application/rss+xml" />
	<link>https://sitdev.corsec.com/tag/security-zh-hans/?lang=zh-hans</link>
	<description>Corsec helps companies complete security certifications and validations like FIPS 140-2, Common Criteria, and listing on the DoDIN APL / UC APL.</description>
	<lastBuildDate>Mon, 07 Feb 2022 19:52:46 +0000</lastBuildDate>
	<language>en-GB</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.3</generator>

<image>
	<url>https://sitdev.corsec.com/wp-content/uploads/cropped-Corsec-Logo-SiteMap-32x32.png</url>
	<title>security Archives - Corsec Security, Inc.®</title>
	<link>https://sitdev.corsec.com/tag/security-zh-hans/?lang=zh-hans</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>FED Roundup: July 2021</title>
		<link>https://sitdev.corsec.com/fed-july21/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Sun, 01 Aug 2021 22:01:15 +0000</pubDate>
				<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[DoDIN APL]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[FIPS 140-3]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[UC APL]]></category>
		<category><![CDATA[CAVP]]></category>
		<category><![CDATA[CCRA]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[CMVP]]></category>
		<category><![CDATA[FIPS]]></category>
		<category><![CDATA[FIPS 140]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[NIAP]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<category><![CDATA[STIG]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=18977</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.disa.mil/newsandevents">DISA News</a></strong></h5>
<ul>
<li><a href="https://www.disa.mil/en/NewsandEvents/2021/DISA-sunsets-DCS-for-Non-Class-IPRN-Sept-1">DISA is scheduled to sunset the Defense Collaboration Services for non-classified Internet Protocol Router Network on September 1, 2021</a></li>
</ul>
<h5 style="padding-left: 40px;"><span style="color: #000000;"><a style="color: #000000;" href="https://public.cyber.mil/stigs/">STIG Updates</a></span></h5>
<ul>
<li><a href="https://public.cyber.mil/stigs/downloads">Trend Micro TippingPoint STIG Released</a></li>
<li><a href="https://public.cyber.mil/stigs/compilations/">SRG/STIG Library Compliance Update</a></li>
<li><a href="https://public.cyber.mil/stigs/downloads/?_dl_facet_stigs=app-security">Unclassified Application STIGs Updated</a></li>
<li><a href="https://public.cyber.mil/stigs/downloads/?_dl_facet_stigs=network-perimeter-wireless">Unclassified Network STIGs and SRGs Updated</a></li>
<li><a href="https://public.cyber.mil/stigs/downloads/?_dl_facet_stigs=operating-systems">Unclassified Operating Systems STIGs and Overviews Updated</a></li>
<li>CUI HBSS STIGs Updated</li>
<li><a href="https://public.cyber.mil/stigs/downloads/?_dl_facet_stigs=supplemental-automation-content">Supplemental Automation Content Updated</a></li>
<li><a href="https://public.cyber.mil/stigs/downloads/?_dl_facet_stigs=sunset">Sunset &#8211; Adobe ColdFusion 11 STIG Ver 2, Rel 1</a></li>
<li><a href="https://public.cyber.mil/stigs/downloads/?_dl_facet_stigs=scap">Benchmarks Updated</a></li>
</ul>
</div>
<p><span id="more-18977"></span></p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://csrc.nist.gov/News">NIST News</a></strong></h5>
<h5 style="padding-left: 30px;">Announcements:</h5>
<ul>
<li><a href="https://csrc.nist.gov/News/2021/data-classification-practices-final-pd">NCCoE final Project Description for &#8220;Data Classification Practices: Facilitating Data-Centric Security.&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/automation-of-the-cmvp-final-project-description"><span style="color: #3366ff;">NIST has finalized the Project Description for the &#8220;Automation of the Cryptographic Module Validation Program (CMVP).&#8221;</span></a></li>
</ul>
<h5 style="padding-left: 30px;">Special Publications &amp; Updates:</h5>
<ul>
<li><a href="https://csrc.nist.gov/News/2021/draft-sp-800-53a-rev-5">Draft SP 800-53A Revision 5, &#8220;Assessing Security and Privacy Controls in Information Systems and Organizations,&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/review-of-the-aes-nist-publishes-nistir-8319">NISTIR 8319, &#8220;Review of the Advanced Encryption Standard,&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/nistir-8369-lightweight-crypto-2nd-round-report">NISTIR 8369, &#8220;Status Report on the Second Round of the NIST Lightweight Cryptography Standardization Process.&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/nist-publishes-sp-800-47-rev-1">SP 800-47 Revision 1, &#8220;Managing the Security of Information Exchanges.&#8221;</a></li>
<li><a href="https://csrc.nist.gov/News/2021/identifying-estimating-cybersecurity-risk-for-erm">2nd Draft NISTIR 8286A: &#8220;Identifying and Estimating Cybersecurity Risk for Enterprise Risk Management.&#8221;</a></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.niap-ccevs.org/Announcements/Announcements.cfm">NIAP News</a></strong></h5>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Updates:</h5>
<ul>
<li>None</li>
</ul>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Protection Profile Posting:</h5>
<ul>
<li>NIAP is calling for Technical Community (TC) participants to review the VPN Client and VPN Gateway (GW) Protection Profile (PP) Modules</li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div></div></div></div></div><div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper"><div class="vc_row wpb_row vc_inner vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <a href="https://ww3.corsec.com/subscribe"><span style="color: #0000ff;">Subscribe</span></a></p>
</div>

		</div>
	</div>
</div></div></div><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/contact-us/">Press Contact:</a></strong></h5>
<p><strong>Jake Nelson</strong><br />
Dir of Marketing<br />
Jnelson@corsec.com</p>
</div>

		</div>
	</div>
</div></div></div></div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="(max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="(max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="(max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>FED Roundup: January 2021</title>
		<link>https://sitdev.corsec.com/fed-jan21/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Mon, 01 Feb 2021 17:57:11 +0000</pubDate>
				<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[DoDIN APL]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[FIPS 140-3]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[CAVP]]></category>
		<category><![CDATA[CCRA]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[DISA]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[NIAP]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<category><![CDATA[STIG]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=18801</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.disa.mil/newsandevents">DISA News</a></strong></h5>
<ul>
<li><a href="https://www.disa.mil/NewsandEvents/2020/Continuous-improv-reqs-continuous-planning"><span style="color: #3366ff;">DISA continues to work towards implementation of the DISA Strategic Plan FY 2019-2022 Version 2, released in December of 2020.</span></a></li>
<li><a href="https://www.disa.mil/-/media/Open-Letter-to-DISA-Contractors-SPRS.ashx?la=en&amp;hash=95CFB9AFAC947EFEC8B87872FACD1E16D9E0431B"><span style="color: #3366ff;">Assessment Requirements for IT services will now be placed in DISA contracts as outlined by a new directive from the Head of DISA contracting activity, Douglas W. Packard</span></a></li>
</ul>
<h5 style="padding-left: 40px;"><span style="color: #000000;"><a style="color: #000000;" href="https://public.cyber.mil/stigs/">STIG Updates</a></span></h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/disa-has-released-the-sles-15-security-technical-implementation-guide-stig/">DISA has released the SLES 15 Security Technical Implementation Guide (STIG) for review</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/disa-has-released-the-honeywell-android-9-x-security-technical-implementation-guide-stig/">DISA has released the Honeywell Android 9.X Security Technical Implementation Guide (STIG) for review</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/disa-has-released-updates-to-the-srg-stig-library-compilations-5/">DISA has updated the SRG/STIG Library Compilations</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/group-policy-objects-gpos-have-been-updated-for-january-2021/">Group Policy Objects (GPO) have been updated</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/stig-update-january-2021-quarterly-release/">2021 Q1 Quarterly Release of STIGs</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/request-for-comments-disa-has-released-the-draft-cisco-asa-stig-for-review/">DISA has released the Draft Cisco ASA Security Technical Implementation Guide (STIG) for review</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/request-for-comments-disa-has-released-the-draft-rhel-8-stig-scap-benchmark-for-review/">DISA has released the Draft Red Hat Enterprise Linux (RHEL) 8 Security Technical Implementation Guide (STIG) SCAP Benchmark for review</a></span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://csrc.nist.gov/News">NIST News</a></strong></h5>
<h5 style="padding-left: 30px;">Announcements:</h5>
<ul>
<li><span style="color: #3366ff;">(None)</span></li>
</ul>
<h5 style="padding-left: 30px;">Special Publications &amp; Updates:</h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-204b/draft">Draft NIST Special Publication (SP) 800-204B, <em>Attribute-based Access Control for Microservices-based Applications using a Service Mesh</em></a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2021/control-catalog-and-baselines-as-spreadsheets">New documents and information has been posted for the NIST Special Publication (SP) 800-53, Revision 5, <em>Security and Privacy Controls for Information Systems and Organizations</em>, and NIST SP 800-53B, <em>Control Baselines for Information Systems and</em></a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-47/rev-1/draft">NIST Draft Special Publication (SP) 800-47 Revision 1, <em>Managing the Security of Information Exchanges</em></a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/nistir/8322/final">NISTIR 832 for the Cybersecurity for Internet of Things program</a></span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.niap-ccevs.org/Announcements/Announcements.cfm">NIAP News</a></strong></h5>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Updates:</h5>
<ul>
<li><span style="color: #3366ff;">(None)</span></li>
</ul>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Protection Profile Posting:</h5>
<ul>
<li><a href="https://www.niap-ccevs.org/Announcements/Announcements.cfm#ann1248"><span style="color: #3366ff;">PP-Module for VPN Clients (VPN), Version 2.2</span></a></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <a href="https://ww3.corsec.com/subscribe"><span style="color: #0000ff;">Subscribe</span></a></p>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_text_column wpb_content_element "><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Press Contact:</a></strong></h5>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p><strong>Jake Nelson</strong><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>FED Roundup: November 2020</title>
		<link>https://sitdev.corsec.com/fed-nov20/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Wed, 02 Dec 2020 20:08:28 +0000</pubDate>
				<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[DoDIN APL]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[FIPS 140-3]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[CMVP]]></category>
		<category><![CDATA[DISA]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[NIAP]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=18765</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.disa.mil/newsandevents">DISA News</a></strong></h5>
<ul>
<li><a href="https://www.disa.mil/NewsandEvents/2020/Global-Video-Services-unclassified-voice"><span style="color: #3366ff;">DISA&#8217;s Global Video Services – Unclassified expands to include voice dial-in capability</span></a></li>
</ul>
<h5 style="padding-left: 40px;"><span style="color: #000000;"><a style="color: #000000;" href="https://public.cyber.mil/stigs/">STIG Updates</a></span></h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/stig-update-disa-has-released-the-juniper-srx-for-anisble-automation-package/">DISA has released the Juniper SRX for Anisble Automation Package</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/stig-update-disa-has-released-the-canonical-ubuntu-18-04-stig-benchmark/">DISA has released the Canonical Ubuntu 18.04 STIG</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://public.cyber.mil/announcement/disa-has-released-the-motorola-android-9-x-stig/">DISA has released the Motorola Android 9.x STIG</a></span></li>
<li><a href="https://public.cyber.mil/announcement/supplemental-automation-content-has-been-updated-for-october-2020/"><span style="color: #3366ff;">The following supplemental content has been updated:</span></a>
<ul>
<li>Ansible Content:<br />
Cisco IOS XE Router STIG for Ansible – Ver 2, Rel 1<br />
Red Hat Enterprise Linux 7 STIG for Ansible – Ver 3, Rel 1</li>
<li>Chef Content:<br />
Red Hat Enterprise Linux 7 STIG for Chef – Ver 3, Rel 1</li>
</ul>
</li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://csrc.nist.gov/News">NIST News</a></strong></h5>
<h5 style="padding-left: 30px;">Announcements:</h5>
<ul>
<li><a href="https://csrc.nist.gov/News/2020/updated-workforce-framework-for-cybersecurity"><span style="color: #3366ff;">The National Initiative for Cybersecurity Education (NICE) released the first revision to the Workforce Framework for Cybersecurity (NICE Framework)</span></a></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2020/draft-fips-201-3-and-workshop">Draft Federal Information Processing Standard (FIPS) 201-3</a>, <em><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/fips/201/3/draft" data-csrc-pub-link="true" data-pub-guid="b8f49697-de25-410f-b4a0-784a6e861164">Personal Identity Verification (PIV) of Federal Employees and Contractors</a></em></span></li>
</ul>
<h5 style="padding-left: 30px;">Special Publications &amp; Updates:</h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2020/nistirs-8278-and-8278a-published">NISTIR 8278, <em>National Online Informative References (OLIR) Program: Program Overview and OLIR Uses</em></a></span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.niap-ccevs.org/Announcements/Announcements.cfm">NIAP News</a></strong></h5>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Updates:</h5>
<ul>
<li><span style="color: #3366ff;">(None)</span></li>
</ul>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Protection Profile Posting:</h5>
<ul>
<li><span style="color: #3366ff;">(None)</span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <span style="color: #0000ff;"><a style="color: #0000ff;" href="https://ww3.corsec.com/subscribe">Subscribe</a></span></p>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_text_column wpb_content_element "><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Press Contact:</a></strong></h5>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p><strong>Jake Nelson</strong><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Enovate Medical Crypto Module Achieves FIPS 140 Validation</title>
		<link>https://sitdev.corsec.com/enovate-medical-fips/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Thu, 10 Sep 2020 16:05:46 +0000</pubDate>
				<category><![CDATA[Customers]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[CAVP]]></category>
		<category><![CDATA[CMVP]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/enovate-medical-fips/</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p>Corsec would like to congratulate our partner, Enovate Medical LLC, for completing the Federal Information Processing Standard 140-2 (<span class="s1" style="color: #008000;"><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a></span>) validation on their FIPS Cryptographic Module for EcoFlex, Rhythm, Envoy, and Encore.</p>
<p>To achieve this milestone, Enovate partnered with Corsec, completing the validation at a Level 1 as seen in certificate <a href="https://csrc.nist.gov/projects/cryptographic-module-validation-program/certificate/3706"><span style="color: #3366ff;">#3706</span></a>. For more information on the validation and to find additional details on the Crypto Module security policy, visit <a href="https://csrc.nist.gov/Projects/cryptographic-module-validation-program/Validated-Modules/Search"><span style="color: #3366ff;">NIST’s validated modules site</span></a>.</p>
<p>For more information on engineering your product to meet Federal and regulated industry security requirements, <a href="https://sitdev.corsec.com/contact-us/"><span style="color: #3366ff;">schedule time to speak to a Corsec engineer</span></a>.</p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<h5><strong><span class="s3">About FIPS 140-2</span></strong></h5>
</div>
</div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p><span class="s1"><span style="color: #008000;"><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a></span> is a joint effort by the National Institute of Standards and Technology (NIST) in the United States, and the Communications Security Establishment Canada (CSEC), under the Canadian government. The Cryptographic Module Validation Program (CMVP), headed by NIST, provides module and algorithm testing for <span style="color: #008000;"><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a></span>, which applies to Federal agencies using validated cryptographic modules to protect sensitive government data in computer and telecommunication systems. <span style="color: #008000;"><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a></span> provides stringent third-party assurance of security claims on any product containing cryptography that may be purchased by a government agency.</span></p>
<p><span class="s1">FIPS, which is mandated by law in the U.S. and very strictly enforced in Canada, is also currently being reviewed by ISO to become an international standard. <span style="color: #008000;"><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a></span> is gaining worldwide recognition as an important benchmark for third party validations of encryption products of all kinds. A <span style="color: #008000;"><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a></span> validation of a product provides end users with a high degree of product security, assurance, and dependability.</span></p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper"><strong>About Enovate Medical</strong></h5>
</div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p>Enovate Medical powers intelligent care through the first workstation solution that connects nurses, patients, management, and IT staff.</p>
<p>Enovate Medical manufactures and implements intelligent workstation solutions and services that improve clinical workflows and facilitate real time Electronic Health Record (EHR) charting at the point of care.</p>
<p>To learn more about Enovate, continue to their <span style="color: #3366ff;"><a href="http://www.enovatemedical.com">website</a></span>.</p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper"><strong>About Corsec Security, Inc.</strong></h5>
</div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p>For two decades Corsec<strong> </strong>has assisted companies through the IT security certification process for <span style="color: #008000;"><strong><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a> / <span style="color: #339966;"><a style="color: #339966;" href="https://sitdev.corsec.com/fips-140-3/">FIPS 140-3</a></span></strong>,</span> <span style="color: #ff6600;"><a style="color: #ff6600;" href="https://sitdev.corsec.com/common-criteria/"><strong>Common Criteria</strong></a></span> (CC) and the <span style="color: #0000ff;"><a style="color: #0000ff;" href="https://sitdev.corsec.com/dodin-apl/"><strong>DoD’s APL</strong></a></span>. We are a privately owned company focused on partnering with organizations worldwide to assist with the process of security certifications and validations. Our certification methodology helps open doors to new markets and increase revenue for clients with products ranging from mobile phones to satellites. Our broad knowledge safeguards against common pitfalls and thwarts delays, translating to a swift and seamless path to certification. Corsec has created the benchmark for providing business leaders with fast, flexible access to industry knowledge on security certifications and validations.</p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_grey" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div><div class="vc_row wpb_row vc_inner vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <a href="https://ww3.corsec.com/subscribe"><span style="color: #0000ff;">Subscribe</span></a></p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><a href="https://ww3.corsec.com/linkedin"><img loading="lazy" decoding="async" class="alignnone" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" /></a>     <img loading="lazy" decoding="async" class="alignnone" title="https://ww3.corsec.com/twitter" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />    <a href="https://ww3.corsec.com/facebook"><img loading="lazy" decoding="async" class="alignnone" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></p>

		</div>
	</div>
</div></div></div><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Press Contact:</a></strong></h5>
<p><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://www.linkedin.com/in/jake-r-nelson/">Jake Nelson</a></span><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>

		</div>
	</div>
</div></div></div></div></div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Algorithm Transition Dates</title>
		<link>https://sitdev.corsec.com/algorithm-transition/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Sun, 30 Aug 2020 19:03:55 +0000</pubDate>
				<category><![CDATA[Algorithm Testing]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[FIPS 140-3]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/algorithm-transition/</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p>Recent Implementation Guidance (IG) from NIST could impact vendor algorithms. The following overview has been created to summarize those critical dates and associated algorithms.</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><strong><u><span style="font-style: inherit !important;">AES CBC-CS1, CBC-CS2, CBC-CS3 (IG A.12)</span></u></strong></p>
<ul>
<li>Until <strong>Sep. 1, 2020</strong>, implementations that claim vendor affirmation to <em>NIST SP 800-38A Addendum A</em> will be accepted for submission.</li>
<li>After <strong>Sep. 1, 2020</strong>, only implementations that are CAVP-tested for compliance to<em>NIST SP 800-38A Addendum A</em> will be accepted for submission.</li>
</ul>
<p><strong><u>SHAKE and KECCAK-based hash algorithms (IG A.15)</u></strong></p>
<ul>
<li>Until <strong>Sep. 1, 2020</strong>, implementations that claim vendor affirmation to <em>NIST SP 800-185</em> will be accepted for submission.</li>
<li>After <strong>Sep. 1, 2020</strong>, only implementations that are CAVP-tested for compliance to<em>NIST SP 800-185</em> will be accepted for submission.</li>
</ul>
<p><strong><u>PBKDF (IG D.6)</u></strong></p>
<ul>
<li>Until <strong>Dec. 31, 2020</strong>, implementations that claim vendor affirmation to <em>NIST SP 800-132</em> will be accepted for submission.</li>
<li>After <strong>Dec. 31, 2020</strong>, only implementations that are CAVP-tested for compliance to <em>NIST SP 800-132</em> will be accepted for submission.</li>
</ul>
<p><strong><u>Key agreement schemes (IG G.20, IG D.1-rev2, IG D.1-rev3, and IG D.8)</u></strong></p>
<ul>
<li>New submissions (3SUB, 5SUB) with previous <em>NIST SP 800-56A</em>-based acceptance scenarios will no longer be accepted after <strong>Dec. 31, 2020</strong>. These scenarios include, for example, allowances for leveraging a shared secret CVL and a KDF CVL to claim a compliant KAS.</li>
<li>Implementations under the previous <em>NIST SP 800-56A</em>-based acceptance scenarios will no longer be acceptable for use in FIPS mode after <strong>Dec. 31, 2021</strong>.
<ul>
<li>CVL certificates used to claim compliance for key agreement schemes will become obsolete after <strong>Dec. 21, 2021</strong>.</li>
<li>New submissions with these CVL certificates will not be accepted after <strong>Dec. 21, 2021</strong>.</li>
<li>Modules with claims of compliance to <em>NIST SP 800-56A</em> or <em>NIST SP 800-56Arev2</em> will be moved to the Historical List effective <strong>Jan 1, 2022</strong>.</li>
</ul>
</li>
</ul>
<ul>
<li>Until <strong>Dec. 31, 2020</strong>, implementations that claim vendor affirmation to <em>NIST SP 800-56Arev3</em> will be accepted for submission.</li>
<li>After <strong>Dec. 31, 2020</strong>, only implementations that are CAVP-tested for compliance to<em>NIST SP 800-56Arev3 </em>will be accepted for submission.</li>
</ul>
<p><strong><u>Key transport schemes (IG D.9)</u></strong></p>
<ul>
<li>RSA-based implementations that claim compliance to <em>NIST SP 800-56Brev3</em> will require CAVP testing after <strong>Dec. 31, 2020</strong>.</li>
<li>New submissions (3SUB, 5SUB) with RSA-based implementations that are vendor-affirmed to <em>NIST SP 800-56B</em> will no longer be accepted after <strong>Dec. 31, 2020</strong>.</li>
<li>RSA-based implementations that are vendor-affirmed to <em>NIST SP 800-56B</em> will be disallowed after <strong>Dec. 31, 2023</strong>.</li>
<li>Non-compliant implementations of RSA key wrap will be allowed until <strong>Dec. 31, 2023</strong>.</li>
<li>New submissions (3SUB, 5SUB) with non-compliant implementations of RSA key wrap will no longer be accepted after <strong>Dec. 21, 2020</strong>.</li>
</ul>
<p><strong><u>Key derivations schemes (IG D.10)</u></strong></p>
<ul>
<li>Vendors may continue to claim vendor affirmation to <em>NIST SP 800-56Crev1</em> thru <strong>Dec. 31, 2020</strong>.</li>
<li>Implementations that claim compliance to <em>NIST SP 800-56Crev1</em> will require CAVP testing after <strong>Dec. 31, 2020</strong>.</li>
</ul>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><strong>Need Support?</strong></p>
<p><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://sitdev.corsec.com/contact-us/">Contact Corsec</a></span> to discuss your resolution path and determine if you need to take action for your validation.</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div></div></div></div></div><div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper"><div class="vc_row wpb_row vc_inner vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <a href="https://ww3.corsec.com/preferences?epc_hash=RQWDMIqgM4KnesYu0jw6IjO8LZywa9JCA9yip6i2fvw"><span style="color: #0000ff;">Subscribe</span></a></p>
</div>

		</div>
	</div>
</div></div></div><div class="wpb_column vc_column_container vc_col-sm-6"><div class="vc_column-inner vc_custom_1586536412535"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;">Press Contact:</strong></h5>
<p><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://www.linkedin.com/in/jake-r-nelson/">Jake Nelson</a></span><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>
</div>

		</div>
	</div>
</div></div></div></div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://ww3.corsec.com/linkedin"><img loading="lazy" decoding="async" class="alignnone" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" /></a>     <img loading="lazy" decoding="async" class="alignnone" title="https://ww3.corsec.com/twitter" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />    <a href="https://ww3.corsec.com/facebook"><img loading="lazy" decoding="async" class="alignnone" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Forcepoint NGFW Engine Added to DoDIN APL</title>
		<link>https://sitdev.corsec.com/forcepoint-ngfw-apl/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Mon, 29 Jul 2019 17:24:35 +0000</pubDate>
				<category><![CDATA[Customers]]></category>
		<category><![CDATA[DoDIN APL]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[DISA]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<category><![CDATA[UC APL]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=17977</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p class="p1"><span class="s1">Corsec would like to congratulate our partner, Forcepoint, on completing the DoDIN APL process for their Next Generation Firewall (NGFW) Engine. Forcepoint partnered with Corsec to achieve this milestone and o</span><span class="s1">ver the past year the teams worked to harden the product against security requirements for STIG testing, CAC compliance, IPv6, and Information Assurance and Interoperability testing. Forcepoint met the DoD APL’s product security requirements and was awarded the listing under the Data Firewall (DFW) product type.</span></p>
<p>“Completion of the <a href="https://sitdev.corsec.com/dodin-apl/?lang=zh-hans"><strong>DoD’s APL</strong></a> listing process is a testament to Forcepoint’s commitment to supporting the DoD and enhancing the security of its network” said Jake Nelson, Director of Marketing at Corsec. For more information on the listing visit the <a href="https://aplits.disa.mil/processAPList.action">DISA Approved Products List</a>. For more information on engineering your product to meet Federal and regulated industry security requirements, <a href="https://sitdev.corsec.com/c%e6%b1%87n%e7%9a%84%e8%af%b7c%e7%9a%84-%e6%8b%ac%e8%a1%a8/?lang=zh-hans">speak directly to a Corsec engineer</a>.</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5><strong>About The DoDIN APL</strong></h5>
<p class="p1">The DoDIN APL represents the agency’s master list of secure, trusted, and approved technology infrastructure products. The DoDIN APL was developed in an effort to maintain a single consolidated list of products that have completed Interoperability (IO) and Information Assurance (IA) certification. Getting a product included on this coveted list involves a rigorous 39-step process overseen by the Approved Products Certification Office (APCO). This laborious and often confusing process involves the submission of a series of properly completed forms and product documentation, attainment of prerequisite validations and certifications such as <span style="color: #008000;"><strong><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/?lang=zh-hans">FIPS 140-2,</a></strong></span> <a href="https://sitdev.corsec.com/c%e6%b1%87mm%e6%b1%87n-cr%e8%af%8d%e7%9a%84%e5%8c%85r%e8%af%8d%e8%af%b7/?lang=zh-hans"><strong><span style="color: #ff6600;">Common Criteria</span></strong></a>, and adherence to strict scheduling guidelines and interdependencies.</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5><strong>About Forcepoint &amp; the NGFW</strong></h5>
<p class="p1">Forcepoint is the human-centric cybersecurity company that understands behavior and adapts security response and enforcement to risk. The Forcepoint Next Generation Firewall (NGFW) appliances are high-performance network security appliances that add a broad range of built-in security features, including VPN2, IPS3, anti-evasion, TLS inspection, SD-WAN4, and mission-critical application proxies, to a traditional firewall and provides end-to-end protection across the entire enterprise network.</p>
<p class="p1"><span class="s1">For further information, please visit <a href="http://www.forcepoint.com">www.forcepoint.com</a></span></p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<h5><strong>About Corsec Security, Inc.</strong></h5>
<p>For two decades Corsec<strong> </strong>has assisted companies through the IT security certification process for <span style="color: #008000;"><strong><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/?lang=zh-hans">FIPS 140-2</a></strong>,</span> <span style="color: #ff6600;"><a style="color: #ff6600;" href="https://sitdev.corsec.com/c%e6%b1%87mm%e6%b1%87n-cr%e8%af%8d%e7%9a%84%e5%8c%85r%e8%af%8d%e8%af%b7/?lang=zh-hans"><strong>Common Criteria</strong></a></span> (CC) and the <a href="https://sitdev.corsec.com/dodin-apl/?lang=zh-hans"><strong>DoD’s APL</strong></a>. We are a privately owned company focused on partnering with organizations worldwide to assist with the process of security certifications and validations. Our certification methodology helps open doors to new markets and increase revenue for clients with products ranging from mobile phones to satellites. Our broad knowledge safeguards against common pitfalls and thwarts delays, translating to a swift and seamless path to certification. Corsec has created the benchmark for providing business leaders with fast, flexible access to industry knowledge on security certifications and validations.</p>
</div>
</div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<h5><strong>Connect With Us</strong></h5>
<div class="wpb_text_column wpb_content_element ">
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <a href="http://marketing.corsec.com/Subscribe-Email.html">Subscribe</a></p>
</div>
</div>
</div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_grey" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div><div class="vc_row wpb_row vc_inner vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<h5 class="wpb_text_column wpb_content_element "><strong><a href="https://sitdev.corsec.com/company/contact-us/">Press Contact:</a></strong></h5>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p><strong>Jake Nelson</strong><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>
</div>
</div>
<div class="wpb_text_column wpb_content_element "></div>
</div>
</div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<h4><a href="https://sitdev.linkedin.com/company/corsec-security"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://sitdev.facebook.com/Corsec-158518584300710/"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></h4>
</div>
</div>

		</div>
	</div>
</div></div></div></div></div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>FED ROUNDUP: JUNE 2019</title>
		<link>https://sitdev.corsec.com/fed-june19/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Fri, 28 Jun 2019 13:11:36 +0000</pubDate>
				<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[DoDIN APL]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[UC APL]]></category>
		<category><![CDATA[Certification Process]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[DISA]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[NIAP]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=17919</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.disa.mil/newsandevents">DISA’s June News</a></strong></h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://www.disa.mil/NewsandEvents/2019/reduces-DITCO-contracting-fee">DITCO, DISA&#8217;s contracting arm, reduces its enterprise acquisition services fee</a></span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://csrc.nist.gov/News">NIST’s June News</a></strong></h5>
<h5 style="padding-left: 30px;">Announcements:</h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/Open-Security-Controls-Assessment-Language-Milesto">NIST announces Open Security Controls Assessment Language (OSCAL), Version 1.0.0 &#8211; Milestone 1 has been released</a></span></li>
</ul>
<h5 style="padding-left: 30px;">Releases &amp; Special Publications:</h5>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/nist-publishes-nistir-8228">NIST Interagency/Internal Report 8228, &#8220;Considerations for Managing Internet of Things (IoT) Cybersecurity and Privacy Risks.&#8221;</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/NCCoE-Releases-Data-Confidentiality-Draft-Project">NCCoE has posted two draft data confidentiality project descriptions</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/draft-sp-800-171-rev-2-and-sp-800-171b">Draft SP 800-171 Rev. 2 and SP 800-171B</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/nist-publishes-sp-800-205">SP 800-205, &#8220;Attribute Considerations for Access Control Systems.&#8221;</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/NCCoE-Draft-Project-Descriptions-for-SMBs-and-Manu">NCCoE drafts two Project Descriptions for SMBs and Manufactures</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/draft-white-paper-on-ssdf">Draft White Paper &#8220;Mitigating the Risk of Software Vulnerabilities by Adopting a Secure Software Development Framework (SSDF)&#8221;</a></span></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/News/2019/nist-publishes-nistir-8221">NISTIR 8221, &#8220;A Methodology for Enabling Forensic Analysis Using Hypervisor Vulnerabilities Data.&#8221;</a></span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://www.niap-ccevs.org/Announcements/Announcements.cfm">NIAP’s June News</a></strong></h5>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Updates:</h5>
<ul>
<li><span style="color: #3366ff;">None</span></li>
</ul>
<h5 class="wpb_wrapper" style="text-align: left; padding-left: 30px;">Protection Profile Posting:</h5>
<ul>
<li><span style="color: #3366ff;">None</span></li>
</ul>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element ">
<h5 class="wpb_wrapper" style="text-align: left;"><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <span style="color: #0000ff;"><a style="color: #0000ff;" href="http://marketing.corsec.com/Subscribe-Email.html">Subscribe</a></span></p>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "></div>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p style="text-align: center;">###</p>
</div>
</div>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_black" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_text_column wpb_content_element "><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Press Contact:</a></strong></h5>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p><strong>Jake Nelson</strong><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<div class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></div>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>FIPS 140-3 APPROVED</title>
		<link>https://sitdev.corsec.com/fips-140-3-approved/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Wed, 01 May 2019 15:52:00 +0000</pubDate>
				<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Certification Process]]></category>
		<category><![CDATA[Certification Updates]]></category>
		<category><![CDATA[federal regulation]]></category>
		<category><![CDATA[FIPS 140-3]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/fips-140-3-approved/</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p>A <a id="" href="https://www.federalregister.gov/documents/2019/05/01/2019-08817/announcing-issuance-of-federal-information-processing-standard-fips-140-3-security-requirements-for" target="_blank" rel="noopener noreferrer">Federal Register Notice</a> has been issued for the &#8220;Federal Information Processing Standard (<span style="color: #008000;"><a id="" style="color: #008000;" title="FIPS 140" href="https://csrc.nist.gov/publications/detail/fips/140/3/final" target="_blank" rel="noopener noreferrer">FIPS</a></span>) 140-3, Security Requirements for Cryptographic Modules&#8221;.</p>
<p>Having now been signed by the U.S. Commerce Secretary, it is official, FIPS 140-3 has been approved!</p>
<p style="padding-left: 40px;"><em>&#8220;This notice announces the Secretary of Commerce&#8217;s issuance of Federal Information Processing Standard (FIPS) 140-3, Security Requirements for Cryptographic Modules. <span style="color: #008000;">FIPS 140-3</span> includes references to two existing international standards: International Organization for Standardization/International Electrotechnical Commission (ISO/IEC) 19790:2012(E) Information technology — Security techniques — Security requirements for cryptographic modules, and ISO/IEC 24759:2017(E) Information technology — Security techniques — Test requirements for cryptographic modules. As permitted by those standards, NIST Special Publication (SP) series 800-140 will specify updates, replacements, or additions to the currently-cited ISO/IEC standard, as necessary. Those new SP 800-140 documents (currently under development) will consolidate implementation guidance and administrative guidance, and will be made available for public review and comment.&#8221;</em></p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><strong>Key Dates:</strong></p>
<p>Companies actively working on or planning a FIPS validation will inevitably face decisions around which standard to work towards. The following dates will be critical for those projects:</p>
<ul>
<li><span style="color: #339966;">Draft For Comments: Complete</span></li>
<li><span style="color: #339966;">Effective Date: Complete</span></li>
<li><span style="color: #339966;">Publication of the Standard: Complete</span></li>
<li><span style="color: #339966;">Supporting Documents for FIPS 140-2 &amp; the CMVP Released: Complete</span></li>
<li>New Testing Begins: 9/22/20</li>
<li>140-3 Mandated &amp; The Last Day for 140-2 Submissions: 9/22/21 (This means Labs must submit their Lab reports to CMVP by this date)</li>
</ul>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><b>Documentation:</b></p>
<p>CMVP wants to minimize the content in the series of NIST SP 800-140 documents because they hope to be as close to the international standard as possible. These are the documents that we believe will replace the existing FIPS 140-2 DTR, Appendices, and Annexes:</p>
<ul>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-140/final">NIST SP 800-140</a></span> – <em>FIPS 140-3 Derived Test Requirements</em></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-140a/final">NIST SP 800-140A</a></span> – <em>CMVP Documentation Requirements</em></li>
<li><a href="https://csrc.nist.gov/publications/detail/sp/800-140b/final"><span style="color: #3366ff;">NIST SP 800-140B</span></a> – <em>CMVP Security Policy Requirements</em></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-140c/final">NIST SP 800-140C</a> </span>– <em>CMVP Approved Security Functions</em></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-140d/final">NIST SP 800-140D</a> </span>– <em>CMVP Approved Sensitive Security Parameter Generation and Establishment Methods</em></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-140e/final">NIST SP 800-140E</a></span> – <em>CMVP Approved Authentication Mechanisms</em></li>
<li><span style="color: #3366ff;"><a style="color: #3366ff;" href="https://csrc.nist.gov/publications/detail/sp/800-140f/final">NIST SP 800-140F</a></span> – <em>CMVP Approved Non-Invasive Attack Mitigation Test Metrics</em></li>
</ul>
<p>A notable omission from the new SP 800-140 series is any reference document for Approved Protection Profiles from Common Criteria (a CC-certified operating system was required for software validations at level 2 and above).</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><b>Early Review and Analysis:</b></p>
<p>This release has been a long time coming. We still expect additional updates and changes to come, but Corsec has reviewed the public documents and found the following areas to be of interest:</p>
<ul>
<li>Rather than encompassing the module requirements directly, FIPS 140-3 references ISO/IEC 19790:2012. The testing for these requirements will be in accordance with ISO/IEC 24759:2017</li>
<li>This version of FIPS 140-3 retains the 4 levels of validation</li>
<li>The sections in FIPS 140-3 are now as follows:
<ol>
<li>Cryptographic Module Specification</li>
<li>Cryptographic Module Interfaces</li>
<li>Roles, Services, And Authentication</li>
<li>Software/Firmware Security</li>
<li>Operating Environment</li>
<li>Physical Security</li>
<li>Non-Invasive Security</li>
<li>Sensitive Security Parameter Management*</li>
<li>Self-Tests</li>
<li>Life-Cycle Assurance</li>
<li>Mitigation of Other Attacks</li>
</ol>
</li>
</ul>
<p style="padding-left: 80px;"><strong>*</strong>Sensitive Security Parameters is a new category &#8211; SSPs include both CSPs and PSPs (Public Security Parameters)</p>
<p style="padding-left: 80px;"><strong>**</strong>Finite State Model was removed but may have been absorbed into section 11</p>
<p style="padding-left: 80px;"><strong>***</strong>EMI/EMC was removed. There was no mention of EMI/EMC in the draft ISO 24759 either</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p><strong>Moving Forward:</strong></p>
<ol>
<li>Get Ahead: Be the first to complete the new standard (<span style="color: #008000;"><a style="color: #008000;" href="https://csrc.nist.gov/publications/detail/fips/140/3/final">FIPS 140-3</a></span>)</li>
<li>Revalidate Early: Avoid the new requirements prior to the mandated transition date and add 5 years to your current <span style="color: #008000;"><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a></span> validation</li>
<li>Plan Accordingly &#8211; Products being evaluated against FIPS 140-2 during testing transition may face problems completing their certification under old requirements.</li>
</ol>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p>Corsec participates in numerous committees, technical working groups, certification leadership positions, and industry events. As more information develops, we will deliver updates. Stay informed on all the program details, requirements, and timelines associated with FIPS 140-3 – <a href="https://ww3.corsec.com/subscribe">Subscribe</a></p>
<p>For more information on the current <span style="color: #008000;"><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a></span> program, requirements, and process &#8211; <a href="https://sitdev.corsec.com/fips-140-2/">visit here</a>.</p>
<p>For any questions on how this will affect current or future FIPS projects, <a href="https://sitdev.corsec.com/contact-us/">contact Corsec</a>!</p>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p style="text-align: center;">###</p>

		</div>
	</div>
<div class="vc_separator wpb_content_element vc_separator_align_center vc_sep_width_100 vc_sep_pos_align_center vc_separator_no_text vc_sep_color_grey" ><span class="vc_sep_holder vc_sep_holder_l"><span  class="vc_sep_line"></span></span><span class="vc_sep_holder vc_sep_holder_r"><span  class="vc_sep_line"></span></span>
</div>
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_text_column wpb_content_element "><strong style="color: #000000;"><a style="color: #000000;" href="https://sitdev.corsec.com/company/contact-us/">Press Contact:</a></strong></h5>
<div class="wpb_text_column wpb_content_element ">
<div class="wpb_wrapper">
<p><strong>Jake Nelson</strong><br />
Corsec Director of Marketing<br />
jnelson@corsec.com</p>
</div>
</div>

		</div>
	</div>

	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5 class="wpb_text_column wpb_content_element "><a href="https://www.linkedin.com/company/corsec-security"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://www.facebook.com/Corsec-158518584300710/"><img loading="lazy" decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="auto, (max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></h5>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/?utm_source=w3tc&utm_medium=footer_comment&utm_campaign=free_plugin

Content Delivery Network via cdn.corsec.com

Served from: sitdev.corsec.com @ 2026-05-30 22:26:47 by W3 Total Cache
-->