STIGhubSTIGhub
STIGsRMF ControlsCompare
STIGhub— A free STIG search and compliance tool·STIGs updated 3 days ago
Powered by Pylon·Privacy·Terms·© 2026 Beacon Cloud Solutions, Inc.

NIST 800-53 Controls

Rev 5Rev 4
Baselines:AllLowModerateHighPrivacyNo Baseline

Browse 1017 security and privacy controls across 20 families. (filtered to Privacy, Moderate, No Baseline, High baselines)

Each control is linked to DISA CCI identifiers and STIG checks. Search for fast lookup by control ID or CCI.

Control FamiliesAll Controls1017
AC Access Control131AT Awareness and Training15AU Audit and Accountability56CA Assessment, Authorization, and Monitoring25CM Configuration Management56CP Contingency Planning49IA Identification and Authentication62IR Incident Response40MA Maintenance28MP Media Protection20PE Physical and Environmental Protection51PL Planning11PM Program Management37PS Personnel Security17PT PII Processing and Transparency21RA Risk Assessment22SA System and Services Acquisition108SC System and Communications Protection139SI System and Information Integrity102SR Supply Chain Risk Management27

CM — Configuration Management

14 base controls

CM-1Policy and Procedures
26 CCIs
CM-2Baseline Configuration
9 CCIs
CM-3Configuration Change Control
15 CCIs
CM-4Impact Analyses
2 CCIs
CM-5Access Restrictions for Change
10 CCIs
CM-6Configuration Settings
18 CCIs
CM-7Least Functionality
4 CCIs
CM-8System Component Inventory
29 CCIs
CM-9Configuration Management Plan
36 CCIs
CM-10Software Usage Restrictions
10 CCIs
CM-11User-Installed Software
6 CCIs
CM-12Information Location
6 CCIs
CM-13Data Action Mapping
1 CCIs
CM-14Signed Components
2 CCIs