# Unified Federal Information Security Framework **Entity class:** Interagency security-framework initiative ## Definition The **Unified Federal Information Security Framework** was the NIST, DoD, Intelligence Community, and CNSS effort announced on June 16, 2009 to give civilian, defense, and intelligence systems a common federal information-security foundation. Its first installment was NIST SP 800-53 Revision 3 and its common catalog of security controls. The framework unified the control and risk-management grammar while allowing national-security systems and agencies to impose tailored baselines, overlays, parameters, and implementation requirements. ## Relationships - **joint participants:** [[wiki/National Institute of Standards and Technology|NIST]], [[wiki/United States Department of Defense|DoD]], [[wiki/Intelligence Community|IC]], and [[wiki/Committee on National Security Systems|CNSS]]. - **control catalog:** [[wiki/NIST SP 800-53|NIST SP 800-53]]. - **national-security implementation:** [[wiki/CNSSI 1253|CNSSI 1253]]. - **IC implementation:** [[wiki/ICD 503|ICD 503]]. - **source:** [[research/Machine-Readable Assurance and the Convergence of Intelligence|Machine-Readable Assurance and the Convergence of Intelligence]]. ## Sources / Provenance - [NIST — NIST, DOD, Intelligence Agencies Join Forces, June 16, 2009](https://www.nist.gov/news-events/news/2009/06/nist-dod-intelligence-agencies-join-forces-secure-us-cyber-infrastructure)