The Security Content Automation Protocol (SCAP) is a suite of interoperable specifications for the standardized expression, exchange, and processing of security configuration and vulnerability information. SCAP enables consistent automation and reporting across products and environments by defining machine-readable content and associated processing requirements.
SCAP continues to be maintained through the development of SCAP 1.4, which builds upon prior releases to preserve interoperability and operational stability across established security automation use cases.
NIST welcomes community engagement directed toward improving the clarity, quality, and implementation of SCAP 1.4. Email comments to [email protected].
Security and Privacy: configuration management, patch management, security automation, security measurement, vulnerability management