SC-28 System and Communications Protection

Protection of Information at Rest

Medium Priority Intermediate NIST CSF

NIST SC-28 control implementation guidance for Protection of Information at Rest. This control addresses System and Communications Protection requirements and provides comprehensive security measures.

Implementation Guidance

Implement comprehensive System and Communications Protection measures for Protection of Information at Rest. Follow NIST SP 800-53 guidelines and industry best practices for effective implementation.

Best Practices

Follow NIST guidelines, implement monitoring, regular reviews

Quick Facts

Guideline ID SC-28
Category System and Communications Protection
Priority Medium
Level Intermediate
Last Updated Mar 7, 2026

Need Help Implementing This Guideline?

Our certified experts can help you align NIST guidelines with your HIPAA compliance program.