DISA Security Technical Implementation Guides (STIGs)
Defense Information Systems Agency (DISA) STIGs provide technical security configuration standards for DOD information systems. Based on Security Requirements Guides (SRGs), STIGs contain technical guidance for hardening systems across operating systems, applications, network devices, databases, and cloud environments.
Domains
Mobile and Endpoint Security
Application Security
Network Infrastructure
Cloud and Virtualization
General Purpose Operating Systems
Frequently Asked Questions
Map DISA Security Technical Implementation Guides (STIGs) to any other framework
Use our AI-powered compliance platform to find control overlaps, gaps, and build remediation plans in seconds.