STIGhubSTIGhub
STIGsRMF ControlsCompare
STIGhub— A free STIG search and compliance tool·STIGs updated 3 days ago
Powered by Pylon·Privacy·Terms·© 2026 Beacon Cloud Solutions, Inc.

NIST 800-53 Controls

Rev 5Rev 4
Baselines:AllLowModerateHighPrivacyNo Baseline

Browse 425 security and privacy controls across 20 families. (filtered to Moderate, Privacy, Low, High baselines)

Each control is linked to DISA CCI identifiers and STIG checks. Search for fast lookup by control ID or CCI.

Control FamiliesAll Controls425
AC Access Control47AT Awareness and Training7AU Audit and Accountability26CA Assessment, Authorization, and Monitoring14CM Configuration Management32CP Contingency Planning35IA Identification and Authentication26IR Incident Response20MA Maintenance12MP Media Protection10PE Physical and Environmental Protection26PL Planning8PM Program Management24PS Personnel Security10PT PII Processing and Transparency13RA Risk Assessment12SA System and Services Acquisition22SC System and Communications Protection33SI System and Information Integrity34SR Supply Chain Risk Management14

AC — Access Control

18 base controls

AC-1Policy and Procedures
23 CCIs
AC-2Account Management
47 CCIs
AC-3Access Enforcement
1 CCIs
AC-4Information Flow Enforcement
6 CCIs
AC-5Separation of Duties
6 CCIs
AC-6Least Privilege
1 CCIs
AC-7Unsuccessful Logon Attempts
10 CCIs
AC-8System Use Notification
15 CCIs
AC-10Concurrent Session Control
4 CCIs
AC-11Device Lock
4 CCIs
AC-12Session Termination
3 CCIs
AC-14Permitted Actions Without Identification or Authentication
4 CCIs
AC-17Remote Access
8 CCIs
AC-18Wireless Access
6 CCIs
AC-19Access Control for Mobile Devices
12 CCIs
AC-20Use of External Systems
11 CCIs
AC-21Information Sharing
4 CCIs
AC-22Publicly Accessible Content
6 CCIs