The FISMA legislation demonstrated the NIST’s role in developing standards and creating guidelines for information security. The NIST took on more responsibilities including the development of new standards that required:
- Creating categories for information and systems based on the determined amount of security needed/risk possibility.
- Guidelines for what should be included in each new category
- Minimum information security requirements for the categories