What Is FIPS?

Federal agencies, federal contractors and the vendors they interact with have legal requirements they must follow regarding the security of information technology (IT). The Information Technology Reform Act of 1996 and the Federal Information Security Management Act of 2002 are the laws authorizing the creation of these technology requirements. FIPS are the documents that were created from these requirements.

  1. Defining FIPS

    • The Federal Information Processing Standards (FIPS) describe a set of standards that all government contractors, non-military government agencies and vendors working with the government agencies must follow regarding encryption, document processing and other IT (information technology) products and standards. FIPS are developed by the National Institute of Standards and Technology (NIST). The Secretary of Commerce has final approval over what FIPS and guidelines are used.

    FIPS Publications

    • Published by the NIST, each FIPS is numbered, titled and dated. Some of the topics found in FIPS are---Personal Identity Verification (PIV) of Federal Employees and Contractors, Minimum Security Requirements for Federal Information and Information Systems, Advanced Encryption Standard, Guideline for The Analysis of Local Area Network Security. Publications are first listed as drafts before approval. FIPS do not apply to national security systems. National security issues are handled by The Committee on National Security Systems (CNSS).

    FIPS Certification

    • Vendors must use FIPS approved products when working on a government contract. From computer parts to flash drives to modems, every product supplied must follow the requirements outlined in all FIPS publications that are listed with the contract. Sometimes vendors will take a product that is used throughout all government contracts and have it FIPS certified (validated). ScanDisk Corporation is one such vendor who has FIPS certified their Cruzer Enterprise flash drives. This certification indicates the product has met standards for design of the NIST cryptographic module (requirements for strengthened encryption algorithms).

    FIPS Standards

    • FIPS are announced in a public forum and are not secrets or classified information. Standards within the FIPS publications are not always original material. Many of the standards that are documented are used among private corporations and businesses all over the U.S. References to these established standards may be documented in full or may be modified to fit government needs. For example, FIPS publication 140-1, titled, Computer Security For Cryptographic Modules, references IEEE (The Institute of Electrical and Electronic Engineers, Inc.) Standard Number 1012, which is titled, Standard for Software Verification and Validation.

    Finding FIPS

    • Companies like the 1105 Government Information Group provide information on the latest FIPS news geared specifically for the government information technology sector. The Office of the Federal Register is the governments official publication office for the daily posting of news from Federal agencies including NIST and their FIPS.

Related Searches:

Resources

Comments

You May Also Like

  • What is the FIPS Process?

    FIPS is a process found on the Windows operating system. You may notice that FIPS is taking up significant system resources and,...

  • Microsoft FIPS Compliance

    FIPS stands for Federal Information Processing Standards. Microsoft uses FIPS-compliant systems in a number of their operating systems. The National Institute of...

  • What Is FIP in Plumbing?

    Comments. You May Also Like. Cat FIP Symptoms. Feline Infectious Peritonitis (FIP) is one of the most complicated and fatal diseases affecting...

  • List of ANSI Codes

    List of ANSI Codes. The American National Standards Institute (ANSI) is a nonprofit organization founded in 1918 that promotes standards and programs...

  • What Are the Treatments for Fip in Cats?

    Feline Enteric Coronavirus (FECV) is a highly contagious form of coronavirus that affects cats. FECV is present in approximately 30 to 40...

  • FIP Protocols

    FIP Protocols. FIP is an acronym used for three separate protocols, all vastly different. In computer science, FIP stands for FCoE Initialization...

  • Requirements for a Security Business

    Requirements for a Security Business. Security officers patrol buildings, act to deter theft and are sometimes armed---they're often considered an extension of...

  • Process Compliance Checklist

    A process compliance checklist guarantees that employees follow a specific process. While creating a responsibility for employees to follow a process in...

  • How to Use FIPS 140-Compliant Algorithms for Encryption

    The United States Federal Information Processing Standard (FIPS) applies to U.S. non-military agencies and government contractors. The FIPS 140 standard describes the...

  • How to Disable FIPS on Firefox

    The Federal Information Processing Standards, or FIPS, governs the use of cryptography and insures hardware and software conforms to United States encryption...

  • FIP Disease in Cats

    Feline infectious peritonitis or FIP is a disease caused by strains of the feline coronavirus. In some instances, the feline coronavirus is...

  • How to Program a First Alert Radio

    First Alert radios receive digitally encoded civil and weather emergency alert messages from the National Oceanic and Atmospheric Administration's Weather Radio (NWR...

  • Army Security Clearance Requirements

    Army Security Clearance Requirements. An Army security clearance permits access to classified information by the United States government. There are two types...

  • What is the Responsible Debt Relief Algorithm?

    The Debt Relief Algorithm is a formula designed to analyze a household's income-to-debt ratio and lead the household to the best solution...

  • How to Do a Front Flip

    In gymnastics, performing a front flip requires a strong body and a powerful jump. Execute a front flip with tips from a...

  • NEBS Level 3 Certification

    Network Equipment Building System (NEBS) requirements began in the telecommunications industry, as standards for equipment that is used in a central office...

  • How do I Configure Windows XP Security for Nispom Chapter 8?

    If your company has contracted to do industrial work for the U.S. government, the computers your employees will use to handle government...

Related Ads

Featured