Recommended Security Controls for Federal Information Systems and Organizations

From: Revision 2 – December 2007 To: Revision 3 – August 2009 INCLUDES UPDATES AS OF 05-01-2010 NOTE: This document provides a markup of changes made to SP 800-53, Revision 2 to produce Revision 3. Appendices G and H have been totally replaced with new content, thus no markup of these sections is provided. Although a review was made to confirm the accuracy of the word processing comparison function used to identify the changes, the changes in some cases were considerable, and the markup version of the changes may not be exact. As such, the markup version should be viewed as a general guide to the changes made to Revision 2 to produce Revision 3 of SP 800-53. Any discrepancies noted between the markup and clean copies of SP 800-53, Revision 3, please defer to the clean copy for the official version of changes. Formatted: Font: 8 pt