Policies

The policies presented under this topic address national security systems issues from a broad perspective. They establish national-level goals and objectives, all of which are binding upon all U.S. Government departments and agencies.
Documents
File Type Title/Description
PDF file

CNSSP 1
National Policy for Safeguarding and Control of COMSEC Materials

Release Date: 04/30/2024, Version: April 2024, File Size: 462329

This document establishes the policy on Safeguarding and Control of Communication Security (COMSEC) Material for Federal Departments and Agencies that own or operate NSS, including their supporting contractors that operate, use, or manage National Security Systems (NSS).

PDF file

CNSSP 1
National Policy for Safeguarding and Control of COMSEC Materials

Release Date: 03/03/2022, File Size: 381976

This policy establishes a system for the control of communications security (COMSEC) material within the U.S. Executive Departments and Agencies.

PDF file

CNSSP 3
National Policy on Granting Access to U.S. Department of Defense Classified Cryptographic Information

Release Date: 04/30/2024, Version: April 2024, File Size: 287514

This document establishes the Policy on Granting Access to U.S. Classified Cryptographic Information. This Policy mandates the development and implementation of a comprehensive approach to protect U.S. Government NSS. The United States Government is committed to responsibly sharing information through a risk-managed approach among authorized U.S. entities, pursuant to Executive Order 13526.

PDF file

CNSSP 3
National Policy for Granting Access to U.S. Classified Cryptographic Information

Release Date: 10/01/2007, File Size: 110218

PDF file

CNSSP 7
Policy on the use of Commercial Solutions to Protect National Security Systems

Release Date: 12/09/2015, File Size: 330016

Supercedes CNSSAM 01-15

PDF file

CNSSP 8 This document is designated FOUO
Process for the Release & Transfer of U.S. Gov't Cryptologic National Security Sys. Technical Security Material, CDS, information, & Techniques to Foreign Gov'ts & International Organizations

Release Date: 09/24/2021, File Size: 856095

Defines the process and responsibilities to support the release of cryptographic materials including approved Cross Domain Solutions (CDSs) as per the authority of the National Security Directive (NSD) 42, National Policy for the Security of National Security Telecommunications and Information Systems (5 July 1990).

This document is designated FOUO. To access protected FOUO content in the CNSS Library, you must login with a Federal/DoD Public Key Infrastructure (PKI), Personal Identity Verification (PIV) or Common Access Card (CAC) client certificate correctly installed in your browser and click on the "CAC/PKI/PIV Login" button above.

PDF file

CNSSP 10 This document is designated FOUO
(U) NATIONAL POLICY GOVERNING USE OF APPROVED SECURITY CONTAINERS IN INFORMATION SECURITY APPLICATIONS

Release Date: 04/28/2021, File Size: 411420

NATIONAL POLICY GOVERNING USE OF APPROVED SECURITY CONTAINERS IN INFORMATION SECURITY APPLICATIONS

This document is designated FOUO. To access protected FOUO content in the CNSS Library, you must login with a Federal/DoD Public Key Infrastructure (PKI), Personal Identity Verification (PIV) or Common Access Card (CAC) client certificate correctly installed in your browser and click on the "CAC/PKI/PIV Login" button above.

PDF file

CNSSP 11
Acquisition of Information Assurance (IA) and IA-Enabled Information Technology (IT) Products

Release Date: 06/01/2013, File Size: 451415

Supersedes NSTISSP-11, dated July 2003

PDF file

CNSSP 12
CYBERSECURITY POLICY FOR SPACE SYSTEMS USED TO SUPPORT NATIONAL SECURITY MISSIONS

Release Date: 02/06/2018, File Size: 502586

The primary objective of this policy is to help ensure the success of NSM that use space systems, by fully integrating cybersecurity into the planning, development, design, launch, sustained operation, and decommissioning of those space systems used to collect, generate, process, store, display, transmit, or receive National Security Information (NSI), as well as any supporting or related infrastructure.

PDF file

CNSSP 14
Rel of IA Products and Services to Auth U.S. Persons or Activities Not a Part of Fed. Govt

Release Date: 05/19/2021, File Size: 583818

PDF file

CNSSP 15
Use of Public Standards for Secure Information Sharing

Release Date: 10/20/2016, File Size: 259854

Specifies the use of public standards for cryptographic protocol and algorithm interoperability to protect National Security Systems (NSS)

PDF file

CNSSP 16 This document is designated FOUO
National Policy for the Destruction of COMSEC Paper Material

Release Date: 05/04/2021, File Size: 528810

This document is designated FOUO. To access protected FOUO content in the CNSS Library, you must login with a Federal/DoD Public Key Infrastructure (PKI), Personal Identity Verification (PIV) or Common Access Card (CAC) client certificate correctly installed in your browser and click on the "CAC/PKI/PIV Login" button above.

PDF file

CNSSP 17
Policy on Wireless Systems

Release Date: 01/31/2014, File Size: 213242

This policy also assigns responsibilities for improving the security posture of the U.S. Government Executive Departments and Agencies (D/As), and provides references for a minimum set of security measures required for the use of wireless technologies in a national security environment. This document supersedes CNSSP 17 - dated 01 May 2010

PDF file

CNSSP 18
National Policy on Classified Information Spillage

Release Date: 05/19/2021, File Size: 392046

PDF file

CNSSP 19
National Policy Governing the Use of High Assurance Internet Protocol Encryptor (HAIPE) Products

Release Date: 05/18/2022, File Size: 458027

PDF file

CNSSP 21
National Cybersecurity Policy on Enterprise Architecture Frameworks for National Security Systems

Release Date: 07/30/2016, File Size: 714042

PDF file

CNSSP 22
Cybersecurity Risk Management Policy

Release Date: 09/09/2021, File Size: 341433

PDF file

CNSSP 24
Policy on Assured Information Sharing (AIS) for National Security Systems (NSS)

Release Date: 07/02/2021, File Size: 675036

PDF file

CNSSP 25
National Policy for Public Key Infrastructure in National Security Systems

Release Date: 12/11/2017, File Size: 299990

CNSSP 25, National Policy for Public Key Infrastructure in National Security Systems provides for a National Security Systems (NSS) Public Key Infrastructure (PKI) on Secret networks.

PDF file

CNSSP 26 This document is designated FOUO
National Policy on Reducing the Risk of Removable Media for National Security Systems

Release Date: 07/22/2021, File Size: 648441

This document is designated FOUO. To access protected FOUO content in the CNSS Library, you must login with a Federal/DoD Public Key Infrastructure (PKI), Personal Identity Verification (PIV) or Common Access Card (CAC) client certificate correctly installed in your browser and click on the "CAC/PKI/PIV Login" button above.

PDF file

CNSSP 28
Cybersecurity of Unmanned National Security Systems

Release Date: 07/06/2018, File Size: 457437

PDF file

CNSSP 29
National Secret Enclave Connection Policy

Release Date: 07/22/2021, File Size: 876082

PDF file

CNSSP 30 This document is designated FOUO
Cryptographic Key Protection

Release Date: 04/30/2024, Version: April 2024, File Size: 502278

The Committee on National Security Systems (CNSS) issues this policy to provide requirements on cryptographic key protection for national security systems.

This document is designated FOUO. To access protected FOUO content in the CNSS Library, you must login with a Federal/DoD Public Key Infrastructure (PKI), Personal Identity Verification (PIV) or Common Access Card (CAC) client certificate correctly installed in your browser and click on the "CAC/PKI/PIV Login" button above.

PDF file

CNSSP 30 This document is designated FOUO
Cryptographic Key Protection

Release Date: 12/28/2017, File Size: 489399

This issuance provides requirements on cryptographic key protection for national security systems. Cryptographic key protection is an essential security characteristic of cryptographic products.

This document is designated FOUO. To access protected FOUO content in the CNSS Library, you must login with a Federal/DoD Public Key Infrastructure (PKI), Personal Identity Verification (PIV) or Common Access Card (CAC) client certificate correctly installed in your browser and click on the "CAC/PKI/PIV Login" button above.

PDF file

CNSSP 31
Policy for a System Transmission Security (TRANSEC) Plan for National Security Systems

Release Date: 04/30/2024, Version: April 2024, File Size: 281977

This document establishes the policy for a System Transmission Security (TRANSEC) Plan (STP) for National Security Systems (NSS). It establishes the requirement for systems developers and operators to address TRANSEC practices and understand the threats to the availability and exploitability of data across NSS. It will ensure developers and operators address threats that create denial of service and attempt exploitation in systems that protect NSS and National Security Information (NSI), by integrating TRANSEC into acquisition, development, design, mission, and sustained operation of NSS.

PDF file

CNSSP 32
Cloud Security for National Security Systems

Release Date: 05/20/2022, File Size: 408058

This document establishes the minimum security requirements for National Security Systems (NSS) migrating to or operating in a cloud environment.

PDF file

CNSSP 300 This document is designated FOUO
National Policy on Control of Compromising Emanations

Release Date: 01/11/2006, File Size: 185053

This document is designated FOUO. To access protected FOUO content in the CNSS Library, you must login with a Federal/DoD Public Key Infrastructure (PKI), Personal Identity Verification (PIV) or Common Access Card (CAC) client certificate correctly installed in your browser and click on the "CAC/PKI/PIV Login" button above.

PDF file

NSTISSP 5 This document is designated FOUO
National Policy for Incident Response and Vulnerability Reporting for National Security Systems

Release Date: 01/11/2006, File Size: 50943

This document is designated FOUO. To access protected FOUO content in the CNSS Library, you must login with a Federal/DoD Public Key Infrastructure (PKI), Personal Identity Verification (PIV) or Common Access Card (CAC) client certificate correctly installed in your browser and click on the "CAC/PKI/PIV Login" button above.

PDF file

NSTISSP 101
National Policy on Securing Voice Communications

Release Date: 09/14/1999, File Size: 97216

PDF file

CNSSP 200
National Policy on Controlled Access Protection

Release Date: 02/08/2022, File Size: 459918

Don't see what you're looking for?


Login for additional content.