NIST SP 800-53A
- 800-53A is basically a guide on conducting Security and Privacy Control Assessments (e.g., audits).
- "800-53A provides a set of procedures for conducting assessments of security... and privacy controls employed within federal information systems and organizations."
- The procedures are designed to be tailored to an organizations unique needs and risk tolerances.
Resources
Official
SP 800-53A Rev. 5, Assessing Security and Privacy Controls in Information Systems and Organizations | CSRC
Supplemental