GRCCopilot
Sign In
National Institute of Standards and Technology (NIST)

NIST SP 800-53 Rev 5

The authoritative security and privacy control catalogue for U.S. federal systems and FedRAMP cloud authorisations

Start Assessment Create Free Account
60
Controls
180
Questions
Active
Status

About this Framework

NIST SP 800-53 Revision 5 is the authoritative control catalogue mandated for U.S. federal agencies under FISMA and is the foundation for FedRAMP cloud authorisations. Rev 5 directly integrated privacy controls, added supply chain risk management, and restructured controls to be outcome-based. With 20 control families and over 1,000 controls, it is the most comprehensive security and privacy control library available.

Key Control Domains

Access Control
Audit & Accountability
Configuration Management
Contingency Planning
Identification & Authentication
Incident Response
Risk Assessment
System & Communications Protection
Supply Chain Risk Management
Privacy Controls (PT)
Program Management

Who Needs This?

  • U.S. federal agencies and departments
  • Federal contractors and IT service providers
  • Cloud providers pursuing FedRAMP authorisation
  • State and local government agencies

Compliance Benefits

  • FISMA compliance for federal information systems
  • Foundation for FedRAMP cloud authorisation
  • Integrates privacy and security in one framework
  • Most comprehensive security control library available

Official Reference

NIST SP 800-53 Rev 5 Publication
https://csrc.nist.gov/publications/detail/sp/800-53/rev-5/final

Assessment Details

Issuer / AuthorityNational Institute of Standards and Technology (NIST)
FrameworkNIST SP 800-53 Rev 5
Controls60
Questions180
StatusActive
Assessment Start10 May 2026

Share this Assessment

Share this permanent link with your team, clients or auditors.

https://grcopilot.app/frameworks/nist-sp-800-53-rev-5

Sign in to begin this assessment

Create a free GRC Copilot account to access this and 50+ other security and compliance frameworks.