STIGhubSTIGhub
STIGsRMF ControlsCompare
STIGhub— A free STIG search and compliance tool·STIGs updated 3 days ago
Powered by Pylon·Privacy·Terms·© 2026 Beacon Cloud Solutions, Inc.

NIST 800-53 Controls

Rev 5Rev 4
Baselines:AllLowModerateHighPrivacyNo Baseline

Browse 800 security and privacy controls across 20 families. (filtered to No Baseline, Privacy, Low baselines)

Each control is linked to DISA CCI identifiers and STIG checks. Search for fast lookup by control ID or CCI.

Control FamiliesAll Controls800
AC Access Control97AT Awareness and Training14AU Audit and Accountability41CA Assessment, Authorization, and Monitoring19CM Configuration Management33CP Contingency Planning20IA Identification and Authentication52IR Incident Response30MA Maintenance20MP Media Protection14PE Physical and Environmental Protection36PL Planning11PM Program Management37PS Personnel Security16PT PII Processing and Transparency21RA Risk Assessment19SA System and Services Acquisition97SC System and Communications Protection119SI System and Information Integrity80SR Supply Chain Risk Management24

SA — System and Services Acquisition

12 base controls

SA-1Policy and Procedures
21 CCIs
SA-2Allocation of Resources
11 CCIs
SA-3System Development Life Cycle
16 CCIs
SA-4Acquisition Process
21 CCIs
SA-5System Documentation
24 CCIs
SA-8Security and Privacy Engineering Principles
10 CCIs
SA-9External System Services
15 CCIs
SA-11Developer Testing and Evaluation
21 CCIs
SA-20Customized Development of Critical Components
2 CCIs
SA-22Unsupported System Components
5 CCIs
SA-23Specialization
2 CCIs
SA-24Design For Cyber Resiliency