Skip to content
COOEY
REGULATORY LIBRARY
14 docs in this shelf

The load-bearing documents for a DIB program — CMMC / DFARS regulatory text (eCFR), federal rulemaking, NIST publications and OIRA review — organized as a library. Pick a document; the reader shows the dex dossier: what it says, why it matters, and the concrete obligations it imposes. Originals open at the source.

DIRECTORY_TREE
CMMC / DFARS · eCFR 98 Federal rulemaking 14 NIST publications 14
IR 8613, Multi-Cloud Architecture Challenges: Security and Compliance ImplicationsInitial Public Draft 2026-08-21 · publication SP 1353, NIST Cybersecurity Framework 2.0: Quick-Start Guide for Using Artificial Intelligence (AI) for CSF Analysis and ReportingInitial Public Draft 2026-08-19 · publication CSWP 36F, Initial NAS Message Security: Applying 5G Cybersecurity and Privacy CapabilitiesInitial Public Draft 2026-08-06 · publication SP 800-239, AI Data Center Security Analysis: A High-Performance Computing (HPC) Driven ApproachInitial Public Draft 2026-07-27 · publication SP 800-209 Rev. 1, Security Guidelines for Storage InfrastructureInitial Public Draft 2026-07-22 · publication Project Description Asset Management as a Foundation for Operational Technology CybersecurityInitial Public Draft 2026-06-25 · publication SP 800-213 Rev. 1, IoT Product Cybersecurity Guidelines for the Federal Government: Establishing IoT Product Cybersecurity RequirementsInitial Public Draft 2026-06-24 · publication SP 800-219 Rev. 2, Automated Secure Configuration Guidance from the macOS Security Compliance Project (mSCP)Initial Public Draft 2026-06-22 · publication SP 800-73-6, Interfaces for Personal Identity Verification: Part 2 – PIV Card Application Card Command InterfaceInitial Working Draft 2026-06-12 · publication SP 800-73-6, Interfaces for Personal Identity Verification: Part 1 – PIV Card Application Namespace, Data Model and RepresentationInitial Working Draft 2026-06-12 · publication SP 800-78-6, Cryptographic Algorithms and Key Sizes for Personal Identity VerificationInitial Working Draft 2026-06-12 · publication SP 800-38D Rev. 1, Second Pre-Draft Call for Comments: GCM and GMAC Block Cipher Modes of Operation2nd Preliminary Draft 2026-06-01 · publication IR 8320E, Hardware-Enabled Security: Confidential Computing of Data in Cloud WorkloadsInitial Public Draft 2026-05-29 · publication SP 800-38F Rev. 1, PRE-DRAFT Call for Comments: Recommendation for Block Cipher Modes of Operation: Methods for Key WrappingInitial Preliminary Draft 2026-05-05 · publication
OIRA · OMB review 1
LAST_SYNC: 2026-08-23 18:00
DOC_VIEWER open original ↗
NIST publication 2026-08-21 ◆ DEX DOSSIER

IR 8613, Multi-Cloud Architecture Challenges: Security and Compliance ImplicationsInitial Public Draft

NIST IR 8613 identifies 23 security and compliance challenges unique to multi-cloud architectures, focusing on identity, telemetry, configuration, data protection, and authorization.

This initial public draft report by the NIST Multi-Cloud Security Public Working Group categorizes and analyzes security and compliance challenges specific to multi-cloud environments. It highlights structural gaps in identity and access management, telemetry and logging, configuration and change management, data protection, and compliance/authorization. The document invites public comments on these identified challenges before finalizing the report.

--- [ Regulatory impact ] ---

DIBs operating across multiple cloud providers face amplified risks in maintaining consistent security controls and ATO processes, making these identified friction points critical for compliance planning.

OPEN_ORIGINAL ↗ PERMALINK ⎘ nist/729a4cd2-882b-4608-ad0f-b4f0e53a254f◈ IRIX document body stays at the source — we index, enrich & link