Skip to main content
U.S. flag

An official website of the United States government

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Skip to content

macOS Security Compliance Project

Metadata Updated: September 30, 2025

The macOS security compliance project is an open source effort to provide a programmatic approach to generating security guidance. This project can be used to create customized security baselines of technical security controls by leveraging a library of atomic actions which are mapped to compliance requirements in existing security guides or used to develop customized guidance. Through the use of a library of atomic actions that enhance security, and mapping them back to existing guides and policies, a single project can support multiple security guides and regulated industry policies while also allowing for documentation and QA to be uniformly managed through a single effort. This approach simplifies, and radically accelerates, the updating of annual security guidance through a unification and standardization of effort.Rationale for this project:Normalize and accelerate annual adoption of OS/Hardware by having guidance available to meet the needs of new operating systems on releaseReduce worldwide effort in creating annual guidance by unifying and consolidating compliance efforts into a single projectDevelop a methodology to foster collaboration between baseline authors, reducing overhead and redundancyUnify approach in setting controlsProvide MDM/EMM/security/audit vendors and Apple insight into customer hardening needsImportant note: This project is a programmatic approach to security policy and can produce output content to be used IN CONJUNCTION with management and security tools to achieve compliance.

Access & Use Information

Public: This dataset is intended for public access and use. License: See this page for license information.

Downloads & Resources

References

https://doi.org/10.6028/NIST.SP.800-53r4
https://doi.org/10.6028/NIST.SP.800-70r4
https://doi.org/10.6028/NIST.SP.800-219

Dates

Metadata Created Date November 12, 2020
Metadata Updated Date September 30, 2025
Data Update Frequency irregular

Metadata Source

Harvested from Commerce Non Spatial Data.json Harvest Source

Additional Metadata

Resource Type Dataset
Metadata Created Date November 12, 2020
Metadata Updated Date September 30, 2025
Publisher National Institute of Standards and Technology
Maintainer
Identifier ark:/88434/mds2-2246
Data First Published 2020-06-15
Language en
Data Last Modified 2020-06-05 00:00:00
Category Information Technology:Cybersecurity
Public Access Level public
Data Update Frequency irregular
Bureau Code 006:55
Metadata Context https://project-open-data.cio.gov/v1.1/schema/catalog.jsonld
Schema Version https://project-open-data.cio.gov/v1.1/schema
Catalog Describedby https://project-open-data.cio.gov/v1.1/schema/catalog.json
Harvest Object Id 69827b5a-879e-455e-acad-4414e88bcf35
Harvest Source Id bce99b55-29c1-47be-b214-b8e71e9180b1
Harvest Source Title Commerce Non Spatial Data.json Harvest Source
Homepage URL https://data.nist.gov/od/id/mds2-2246
License https://github.com/usnistgov/macos_security/blob/master/LICENSE.md
Program Code 006:052
Related Documents https://doi.org/10.6028/NIST.SP.800-53r4, https://doi.org/10.6028/NIST.SP.800-70r4, https://doi.org/10.6028/NIST.SP.800-219
Source Datajson Identifier True
Source Hash 3c873665c4faa0a269161ba2273c8ffebc512988133b0879ff80511c39f041e1
Source Schema Version 1.1

Didn't find what you're looking for? Suggest a dataset here.