CYBERSECURITY ASSESSMENT REQUIREMENTS
NIST 800-171A ComplianceComplete this free cybersecurity assessment tool based on industry frameworks including the NIST Cybersecurity Framework to identify security concerns within your environment.
The Complete Guide to NIST 800-171A
The protection of Controlled Unclassified Information (CUI) resident in nonfederal systems and organizations is of paramount importance to federal agencies and can directly impact the ability of the federal government to successfully conduct its assigned missions and business operations. This publication provides federal and nonfederal organizations with assessment procedures and a methodology that can be employed to conduct assessments of the CUI security requirements in NIST Special Publication 800-171, Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations. The assessment procedures are flexible and can be customized to the needs of the organizations and the assessors conducting the assessments. Security assessments can be conducted as self-assessments; independent, third-party assessments; or government-sponsored assessments and can be applied with various degrees of rigor, based on customer-defined depth and coverage attributes. The findings and evidence produced during the security assessments can facilitate risk-based decisions by organizations related to the CUI requirements.
Company Assessment Progress & Score
Assessment Overall SPRS Score
Your SPRS Score starts at -204. Your accumulated score value increases as each requirement is met. A full compliance score is +110. See score value measurement scale for score ranges.
How This is Measured
Total Points Earned
Supplier Performance Risk System (SPRS) defines Assessment Objectives / Determination Statements Requirements with a point value of 5 as critical. Failure to meet any of these results in failure of assessment.
Assessment Criteria Group Requirements Completion Progress
Assessment Objectives Checklist
NIST 800-171 Security Assessment consists of 14 Requirement Criteria Groups containing a total of 110 security requirements Each requirement group contains the requirements related to the general security topic of the group. These groupings are intended to ensure it is straightforward for an organization to employ and self-assess the application of the requirements.