FIPS 199

E1008664

FIPS 199 is a U.S. federal standard that defines security categorization levels (low, moderate, high) for information and information systems based on the potential impact of security breaches.

All labels observed (3)

How this entity was disambiguated

Statements (46)

Predicate Object
instanceOf NIST Federal Information Processing Standard ⓘ
U.S. federal information security standard ⓘ
appliesTo all federal information systems except national security systems ⓘ
audience federal information system owners ⓘ
information security officers ⓘ
risk managers ⓘ
basisFor security categorization of information ⓘ
security categorization of information systems ⓘ
classificationModel low-moderate-high impact model ⓘ
country United States ⓘ
defines high impact level ⓘ
low impact level ⓘ
moderate impact level ⓘ
security categorization standards ⓘ
security impact levels ⓘ
documentType technical standard ⓘ
foundationFor federal security control selection ⓘ
fullName Federal Information Processing Standards Publication 199 ⓘ
impactAssessmentCriterion potential impact on individuals ⓘ
potential impact on organizational assets ⓘ
potential impact on organizational operations ⓘ
potential impact on other organizations ⓘ
potential impact on the Nation ⓘ
impactDimension availability ⓘ
confidentiality ⓘ
integrity ⓘ
issuedBy National Institute of Standards and Technology ⓘ
U.S. Department of Commerce ⓘ
language English ⓘ
publisher NIST Computer Security Division ⓘ
regulatoryContext Federal Information Security Modernization Act ⓘ
relatedTo FIPS 200 ⓘ
NIST Special Publication 800-53 ⓘ
linked to: NIST SP 800-53
scope federal information ⓘ
federal information systems ⓘ
securityObjective protect availability ⓘ
protect confidentiality ⓘ
protect integrity ⓘ
status active ⓘ
supports risk management for federal information systems ⓘ
title Standards for Security Categorization of Federal Information and Information Systems ⓘ
linked to: FIPS 199
usedBy U.S. federal agencies ⓘ
usedFor classifying information systems ⓘ
determining security control baselines ⓘ
usedIn federal information security programs ⓘ
system authorization processes ⓘ

How these facts were elicited

Referenced by (7)

Full triples — surface form annotated when it differs from this entity's canonical label.

FedRAMP Moderate → basedOn → FIPS 199 security categorization ⓘ
linked to: FIPS 199
FIPS 200 → relatedTo → FIPS 199 ⓘ
NIST SP 800-30 → relatedTo → FIPS 199 ⓘ
NIST SP 800-60 → relatedTo → FIPS 199 ⓘ
FIPS 199 → title → Standards for Security Categorization of Federal Information and Information Systems ⓘ
linked to: FIPS 199
FedRAMP Low → basedOnStandard → FIPS 199 ⓘ